cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.12.21.250 Par Nicolas Coolman (2016/12/21)
~ Démarré par Geneviève (Administrator) (2016/12/21 12:57:53)
~ Web: https://www.nicolascoolman.com
~ Blog: https://www.anti-malware.top
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Geneviève\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Geneviève\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 8.1 Pro, 64-bit (Build 9600) =>.Microsoft Corporation

---\\ Navigateurs Internet (3) - 1s
~ GCIE: Google Chrome v32.0.1700.107
~ MFIE: Mozilla Firefox 50.1.0 (x86 fr)
~ MSIE: Internet Explorer v11.0.9600.18538

---\\ Informations sur les produits Windows (3) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ Logiciels de protection (2) - 5s
Avira Free Antivirus v14.0.7.342 (Protection)
Windows Defender (Deactivate)

---\\ Surveillance de Logiciels (2) - 6s
~ Adobe Flash Player 24 NPAPI (Surveillance)
~ Adobe Acrobat Reader DC - Français (Surveillance)

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 16660.292 MB (87% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 230 GB (60%) free of 381 GB : OK =>.Disk Space

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: GENEVIÈVE
~ User Name: Geneviève
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 230 GB free of 381 GB (System)
~ Drive D: has 487 GB free of 550 GB

---\\ Etat du Centre de Sécurité Windows (12) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] EnableShellExecuteHooks: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (25) - 2s
[MD5.ED6B4C95E2A6D67480B9DBB8A8E7D9B4] - 27/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2755504] =>.Microsoft Windows®
[MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - 29/10/2014 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [54784] =>.Microsoft Corporation
[MD5.EC302D06155F8E3C383750993FCB6B27] - 05/10/2015 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [146432] =>.Microsoft Corporation
[MD5.105954F9BEAD700A6DF4B5B489FCCB4B] - 12/11/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2920960] =>.Microsoft Corporation
[MD5.B1102BBDDD9C87B3D609D6C08F7A3DBD] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [570880] =>.Microsoft Corporation
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - 21/12/2013 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [447488] =>.Microsoft Corporation
[MD5.84B55134C5CA26063E7AA980BB15D976] - 08/10/2016 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [658432] =>.Microsoft Corporation
[MD5.4CD766EF361C27DAE50C84AC40C15DF2] - 08/10/2016 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [498688] =>.Microsoft Corporation
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - 14/11/2013 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [19456] =>.Microsoft Corporation
[MD5.A460C3AF3755A2A79A3C8EFE72E147B5] - 13/10/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\AFD.sys [559616] =>.Microsoft Corporation
[MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [26464] =>.Microsoft Windows®
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [88576] =>.Microsoft Corporation
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - 22/08/2013 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [164352] =>.Microsoft Corporation
[MD5.FBFF94FC1FE0699A6BC5ACE270AB9EA1] - 08/09/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [138240] =>.Microsoft Corporation
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - 24/07/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [76800] =>.Microsoft Corporation
[MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - 04/11/2014 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [108544] =>.Microsoft Corporation
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 05/03/2014 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [142848] =>.Microsoft Corporation
[MD5.C3B0566DE49265AE98405825938C20A1] - 19/11/2016 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\MRxSmb.sys [401408] =>.Microsoft Corporation
[MD5.9DC17B7D9D84C37C102D379FCC7D4942] - 14/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [281088] =>.Microsoft Corporation
[MD5.9980B262DBE439AE6BDC91AA985F19EE] - 30/12/2015 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [2017624] =>.Microsoft Windows®
[MD5.57DCE4FB0467986AE78E1C6FC5240D32] - 11/08/2016 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [96256] =>.Microsoft Corporation
[MD5.235624C147E3CB4C288D5D3D8E8D64A2] - 02/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [112640] =>.Microsoft Corporation
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 14/11/2013 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [195584] =>.Microsoft Corporation
[MD5.E0BD2D83875464FEEEB242CBA8B7E073] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [108032] =>.Microsoft Corporation
[MD5.17F7B0F2298D97F4B6C7A69511033D3D] - 14/03/2016 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [316760] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (23) - 2s
O23 - Service: 259f1d6bf883915ff3251827e061eb89 (259f1d6bf883915ff3251827e061eb89) . (...) - C:\Program Files\259f1d6bf883915ff3251827e061eb89\b52223009fae0cd73beeb18b42933cf5.exe (.not file.)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (...) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (.not file.)
O23 - Service: Avira Protection temps réel (AntiVirService) . (...) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (.not file.)
O23 - Service: Avira Protection Web (AntiVirWebService) . (...) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (.not file.)
O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
O23 - Service: ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc. - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe =>.ASUSTeK Computer Inc.®
O23 - Service: AtherosSvc (AtherosSvc) . (.Qualcomm Atheros Commnucations - AdminService Application.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe =>.Qualcomm Atheros Commnucations
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe =>.ASUSTeK Computer Inc.®
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) . (...) - C:\Program Files (x86)\BlueStacks\HD-Service.exe (.not file.)
O23 - Service: Domory Host (dmrhostGeiphbaserward.exe) . (...) - C:\Program Files (x86)\Clagosemerzos\dmrhostGeiphbaserward.exe (.not file.)
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service®
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation®
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation®
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation®
O23 - Service: McAfee McShield (McShield) . (.McAfee, Inc. - McAfee On-Access Scanner service.) - C:\Program Files\Common Files\mcafee\SystemCore\mcshield.exe =>.McAfee, Inc.®
O23 - Service: Muqory (Muqory) . (...) - C:\Program Files (x86)\Ckezercult\Atrdebuger.dll (.not file.) =>Adware.Suspect
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Wireless Controller Service (NVIDIA Wireless Controller Service) . (.NVIDIA Corporation - NVIDIA Wireless Controller Service.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe =>.NVIDIA Corporation®
O23 - Service: Text Message Blog (tugyxuxo) . (...) - C:\Program Files (x86)\37529920-1482005151-46BD-C45F-74D02B146DA9\knswC882.tmpfs (.not file.) =>PUP.Optional.CrossRider
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (31) - 39s
SR - Auto [21/10/2016] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Demand [13/12/2016] [ 270936] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [29/05/2015] [ 77128] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SR - Auto [15/01/2013] [ 107320] ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe =>.ASUSTeK Computer Inc.®
SS - Disabl [13/04/2012] [ 277120] ASUS InstantOn Service (ASUS InstantOn) . (.ASUS.) - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe =>.ASUSTeK Computer Inc.®
SR - Auto [28/12/2012] [ 226944] AtherosSvc (AtherosSvc) . (.Qualcomm Atheros Commnucations.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe =>.Qualcomm Atheros Commnucations
SR - Auto [21/11/2011] [ 96896] ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe =>.ASUSTeK Computer Inc.®
SS - Disabl [30/08/2011] [ 462184] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SS - Disabl [10/03/2015] [ 388824] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe =>.Bluestack Systems, Inc.®
SS - Disabl [10/03/2015] [ 794328] BlueStacks Updater Service;gadgetDataDir=C:\Users\Geneviève (BstHdUpdaterSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe =>.Bluestack Systems, Inc.®
SS - Demand [01/10/2013] [ 279000] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX®
SS - Disabl [12/08/2010] [ 296808] Dragon Service (DragonSvc) . (.Nuance Communications, Inc..) - C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe =>.Nuance Communications, Inc.®
SS - Auto [26/11/2013] [ 116648] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [26/11/2013] [ 116648] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [20/04/2012] [ 635104] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service®
SR - Auto [27/06/2012] [ 129856] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation®
SS - Disabl [11/07/2015] [ 644904] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.®
SR - Auto [25/06/2012] [ 166720] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation®
SR - Auto [17/07/2012] [ 277824] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation®
SS - Auto [22/06/2012] [ 237920] McAfee McShield (McShield) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\SystemCore\mcshield.exe =>.McAfee, Inc.®
SS - Disabl [24/09/2013] [ 219272] McAfee Firewall Core Service (mfefire) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\SystemCore\mfefire.exe =>.McAfee, Inc.®
SS - Disabl [24/09/2013] [ 182752] McAfee Validation Trust Protection Service (mfevtp) . (.McAfee, Inc..) - C:\windows\system32\mfevtps.exe =>.McAfee, Inc.®
SR - Auto [12/12/2016] [ 462784] NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
SS - Demand [12/12/2016] [ 462784] NVIDIA NetworkService Container (NvContainerNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
SR - Auto [11/12/2016] [ 459832] NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
SR - Auto [12/12/2016] [ 1163712] NVIDIA Wireless Controller Service (NVIDIA Wireless Controller Service) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe =>.NVIDIA Corporation®
SS - Disabl [31/10/2012] [ 247152] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe =>.CyberLink®
SS - Disabl [20/09/2016] [ 324224] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SS - Disabl [20/09/2016] [ 324224] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve®
SR - Auto [20/09/2016] [ 324224] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation®
SS - Disabl [20/09/2016] [ 324224] ZAtheros Bt and Wlan Coex Agent (ZAtheros Bt and Wlan Coex Agent) . (.Atheros.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe =>.Atheros

---\\ Tâches planifiées en automatique (59) - 12s
[MD5.1BBF60A9C917179914A815B7E191CC0A] [APT] [564094614d36t4997750] (...) -- C:\ProgramData\564094614d36t4997750\564094614d36t4997750.dll [324224] (.Activate.)
[MD5.220ADB2D8475CF40556F61688D3A3EA3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [324224] (.Activate.) =>.Adobe Systems, Incorporated®
[MD5.B79750091FC0842182FE49D263791294] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [324224] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.C6D3BB61E24F66EB976C6CC55346B5F2] [APT] [ASUS InstantOn Config] (.ASUS.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe [324224] (.Activate.) =>.ASUSTeK Computer Inc.®
[MD5.761986319F4F6EDB33B3F046D254C781] [APT] [ASUS Live Update1] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [324224] (.Activate.) =>.ASUSTeK Computer Inc.®
[MD5.761986319F4F6EDB33B3F046D254C781] [APT] [ASUS Live Update2] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [324224] (.Activate.) =>.ASUSTeK Computer Inc.®
[MD5.0BC5A4142F38A6BB35DECD01A2BC2ED7] [APT] [ASUS P4G] (.ASUS.) -- C:\Program Files\ASUS\P4G\BatteryLife.exe [324224] (.Activate.) =>.ASUSTeK Computer Inc.®
[MD5.C570FD825751F7805CE226F68C4605DE] [APT] [ASUS Splendid ACMON] (.ASUS.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [324224] (.Activate.) =>.ASUSTeK Computer Inc.®
[MD5.C81E206D2DDBD18396506C2978F2C6BA] [APT] [ASUS Splendid ColorU] (...) -- C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe [324224] (.Activate.) =>.ASUSTeK Computer Inc.®
[MD5.8762FEC56F76C635DECC7841AAFB066C] [APT] [ASUS Touchpad Launcher (x64)] (.AsusTek.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [324224] (.Activate.) =>.ASUSTeK Computer Inc.®
[MD5.00000000000000000000000000000000] [APT] [Domory Host] (...) -- C:\Program Files (x86)\Clagosemerzos\dmrhostSheratycava.exe (.not file.) [324224] (.Activate.)
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [324224] (.Activate.) =>.Google Inc®
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [324224] (.Activate.) =>.Google Inc®
[MD5.00000000000000000000000000000000] [APT] [HDWallPaper] (...) -- C:\Program Files (x86)\HDWallPaper\HDWallPaper.exe (.not file.) [324224] (.Activate.) =>.Superfluous.HDWallPaper
[MD5.00000000000000000000000000000000] [APT] [KMSAutoNet] (...) -- C:\ProgramData\KMSAutoS\KMSAuto Net.exe (.not file.) [324224] (.Activate.) =>HackTool.AutoKMS
[MD5.DE6B497D71C1866EC01F33F8CE48D330] [APT] [NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [324224] (.Activate.) =>.NVIDIA Corporation®
[MD5.0C22F9E7C0F7EA2BCBDD0D0D4635C7A1] [APT] [NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [324224] (.Activate.) =>.NVIDIA Corporation®
[MD5.0C22F9E7C0F7EA2BCBDD0D0D4635C7A1] [APT] [NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [324224] (.Activate.) =>.NVIDIA Corporation®
[MD5.5CB414E7A0294C2C83A47A5A0BA1A2D7] [APT] [NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [324224] (.Activate.) =>.NVIDIA Corporation®
[MD5.774C31CF00B0A9B0C2F259179B8B7F51] [APT] [NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [324224] (.Activate.) =>.NVIDIA Corporation®
[MD5.774C31CF00B0A9B0C2F259179B8B7F51] [APT] [NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [324224] (.Activate.) =>.NVIDIA Corporation®
[MD5.00000000000000000000000000000000] [APT] [Phuvudomarnury Helper] (...) -- C:\Program Files (x86)\Ckezercult_\ranipy.exe (.not file.) [324224] (.Activate.) =>Adware.Suspect
[MD5.EFF8FFF2D81A26919EC1D1FCEEDEDAAD] [APT] [Update Checker] (.ASUSTeK.) -- C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [324224] (.Activate.) =>.ASUSTeK
[MD5.00000000000000000000000000000000] [APT] [updengine] (...) -- C:\Program Files (x86)\OtherSearch\updengine.exe (.not file.) [324224] (.Activate.) =>PUP.Optional.FastSearch
[MD5.00000000000000000000000000000000] [APT] [{1E07D0E0-DBB6-4553-BAE8-44E35416A0B2}] (...) -- G:\Windows 8.1\Windows 8.1 Activator\bin\driver\x86\devcon.exe (.not file.) [324224] (.Activate.)
[MD5.104FDF8FA043EE0688CD0AE1FFB9A89A] [APT] [{6C9B0995-4235-4C40-8CEE-6FC4464C1D8F}] (.Bohemia Interactive.) -- C:\Program Files\Bohemia Interactive\Take On Helicopters\TakeOnH.exe [324224] (.Activate.) =>.Bohemia Interactive
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [324224] (.Activate.) =>.Apple Inc.®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [324224] =>.Adobe Systems Incorporated®
O39 - APT: Unknown - (.Facebook.) -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1357036154-3372410748-1368472926-1002Core.job [324224] =>.Facebook
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [324224] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [324224] =>.Google Inc®
O39 - APT: 564094614d36t4997750 - (...) -- C:\Windows\System32\Tasks\564094614d36t4997750 [324224]
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [324224] =>.Adobe Systems, Incorporated®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [324224] =>.Adobe Systems Incorporated®
O39 - APT: ASUS InstantOn Config - (.ASUS.) -- C:\Windows\System32\Tasks\ASUS InstantOn Config [324224] =>.ASUSTeK Computer Inc.®
O39 - APT: ASUS Live Update1 - (.ASUSTeK Computer Inc..) -- C:\Windows\System32\Tasks\ASUS Live Update1 [324224] =>.ASUSTeK Computer Inc.®
O39 - APT: ASUS Live Update2 - (.ASUSTeK Computer Inc..) -- C:\Windows\System32\Tasks\ASUS Live Update2 [324224] =>.ASUSTeK Computer Inc.®
O39 - APT: ASUS P4G - (.ASUS.) -- C:\Windows\System32\Tasks\ASUS P4G [324224] =>.ASUSTeK Computer Inc.®
O39 - APT: ASUS Splendid ACMON - (.ASUS.) -- C:\Windows\System32\Tasks\ASUS Splendid ACMON [324224] =>.ASUSTeK Computer Inc.®
O39 - APT: ASUS Splendid ColorU - (...) -- C:\Windows\System32\Tasks\ASUS Splendid ColorU [324224] =>.ASUSTeK Computer Inc.®
O39 - APT: ASUS Touchpad Launcher (x64) - (.AsusTek.) -- C:\Windows\System32\Tasks\ASUS Touchpad Launcher (x64) [324224] =>.ASUSTeK Computer Inc.®
O39 - APT: Unknown - (.Microsoft Corporation.) -- C:\Windows\System32\Tasks\CreateChoiceProcessTask [324224] =>.Microsoft Corporation
O39 - APT: Domory Host - (...) -- C:\Windows\System32\Tasks\Domory Host [324224] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [324224] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [324224] =>.Google Inc®
O39 - APT: HDWallPaper - (...) -- C:\Windows\System32\Tasks\HDWallPaper [324224] (.Orphan.) =>.Superfluous.HDWallPaper
O39 - APT: KMSAutoNet - (...) -- C:\Windows\System32\Tasks\KMSAutoNet [324224] (.Orphan.) =>HackTool.AutoKMS
O39 - APT: NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} [324224] =>.NVIDIA Corporation®
O39 - APT: NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} [324224] =>.NVIDIA Corporation®
O39 - APT: NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} [324224] =>.NVIDIA Corporation®
O39 - APT: NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} [324224] =>.NVIDIA Corporation®
O39 - APT: NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} [324224] =>.NVIDIA Corporation®
O39 - APT: NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} [324224] =>.NVIDIA Corporation®
O39 - APT: Unknown - (.Microsoft Corporation.) -- C:\Windows\System32\Tasks\OneDrive Standalone Update Task v2 [324224] =>.Microsoft Corporation
O39 - APT: Phuvudomarnury Helper - (...) -- C:\Windows\System32\Tasks\Phuvudomarnury Helper [324224] (.Orphan.) =>Adware.Suspect
O39 - APT: Update Checker - (.ASUSTeK.) -- C:\Windows\System32\Tasks\Update Checker [324224] =>.ASUSTeK
O39 - APT: updengine - (...) -- C:\Windows\System32\Tasks\updengine [324224] (.Orphan.) =>PUP.Optional.FastSearch
O39 - APT: {1E07D0E0-DBB6-4553-BAE8-44E35416A0B2} - (...) -- C:\Windows\System32\Tasks\{1E07D0E0-DBB6-4553-BAE8-44E35416A0B2} [324224] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: {6C9B0995-4235-4C40-8CEE-6FC4464C1D8F} - (.Bohemia Interactive.) -- C:\Windows\System32\Tasks\{6C9B0995-4235-4C40-8CEE-6FC4464C1D8F} [324224] =>.Bohemia Interactive

---\\ Applications lancées au démarrage du système (40) - 2s
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [RtHDVBg] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe =>.Intel Corporation
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe =>.Intel Corporation
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe =>.Intel Corporation
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.®
O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation
O4 - HKLM\..\RunOnce: [wd] C:\Windows\Temp\gD92B.tmp.exe (.not file.)
O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\Geneviève\AppData\Local\Facebook\Update\FacebookUpdate.exe =>.Facebook, Inc.®
O4 - HKCU\..\Run: [ISUSPM] . (.Acresso Corporation - Acresso Software Manager.) -- C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe =>.Acresso Software Inc.®
O4 - HKCU\..\Run: [ultracopier] . (.ultracopier.first-world.info - Supercopier under GPL3.) -- C:\Program Files (x86)\Supercopier\supercopier.exe =>.ultracopier.first-world.info
O4 - HKCU\..\Run: [chAtom] C:\Users\GENEVI~1\AppData\Local\Temp\fhfshffsf99udau.exe (.not file.)
O4 - HKCU\..\Run: [LH9W1KOU7J] C:\Program Files\OXHZSUOT16\OXHZSUOT1.exe (.not file.)
O4 - HKCU\..\Run: [ED6K3TZNK4] C:\Program Files\7X6IQWUNEL\1BNPH0K69.exe (.not file.)
O4 - HKCU\..\Run: [N7QJKYB1EJ] C:\Program Files (x86)\DPower\76W0C742NU.exe (.not file.)
O4 - HKCU\..\Run: [CW31G7CE3I] C:\Program Files (x86)\BestCleaner\DPOAOW1SDF.exe (.not file.)
O4 - HKCU\..\RunOnce: [Software\Microsoft\Windows\CurrentVersion\RunOnce] . (...) -- C:\Users\Geneviève\AppData\Local\Temp\TMP128953.exe
O4 - HKLM\..\Wow6432Node\Run: [ASUSPRP] . (.ASUSTek Computer Inc. - ASUS Product Register Program.) -- C:\Program Files (x86)\ASUS\APRP\aprp.exe =>.ASUSTek Computer Inc.
O4 - HKLM\..\Wow6432Node\Run: [ASUSWebStorage] . (.ASUS Cloud Corporation - ASUS WebStorage Panel.) -- C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\AsusWSPanel.exe =>.ASUS Cloud Corporation®
O4 - HKLM\..\Wow6432Node\Run: [ASUS InstantKey] . (.ASUS - Ikey_start.) -- C:\Program Files (x86)\ASUS\ASUS Instant Key\Ikey_start.exe =>.ASUS
O4 - HKLM\..\Wow6432Node\Run: [UpdatePSTShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe =>.CyberLink®
O4 - HKLM\..\Wow6432Node\Run: [RemoteControl10] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe =>.CyberLink®
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.®
O4 - HKLM\..\Wow6432Node\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [ConnectionCenter] . (.Citrix Systems, Inc. - Citrix Connection Center.) -- C:\Program Files (x86)\Citrix\ICA Client\concentr.exe =>.Citrix Systems, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [CitrixReceiver] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Citrix\Receiver Updater.lnk (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [Redirector] . (.Citrix Systems, Inc. - Citrix FTA, URL Redirector.) -- C:\Program Files (x86)\Citrix\ICA Client\redirector.exe =>.Citrix Systems, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [DNS7reminder] . (.Nuance Communications, Inc. - Ereg.) -- C:\Program Files (x86)\Nuance\NaturallySpeaking11\Ereg\Ereg.exe =>.Nuance Communications, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] C:\Program Files (x86)\Java\jre1.8.0_73\bin\jusched.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [BestCleaner] C:\Program Files (x86)\BestCleaner\BestCleaner.exe (.not file.)
O4 - HKLM\..\policies\Explorer\Run: [BtvStack] . (.Qualcomm Atheros Commnucations - Extension Core.) -- C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe =>.Qualcomm Atheros Commnucations
O4 - HKUS\S-1-5-21-1357036154-3372410748-1368472926-1002\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\Geneviève\AppData\Local\Facebook\Update\FacebookUpdate.exe =>.Facebook, Inc.®
O4 - HKUS\S-1-5-21-1357036154-3372410748-1368472926-1002\..\Run: [ISUSPM] . (.Acresso Corporation - Acresso Software Manager.) -- C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe =>.Acresso Software Inc.®
O4 - HKUS\S-1-5-21-1357036154-3372410748-1368472926-1002\..\Run: [ultracopier] . (.ultracopier.first-world.info - Supercopier under GPL3.) -- C:\Program Files (x86)\Supercopier\supercopier.exe =>.ultracopier.first-world.info
O4 - HKUS\S-1-5-21-1357036154-3372410748-1368472926-1002\..\Run: [chAtom] C:\Users\GENEVI~1\AppData\Local\Temp\fhfshffsf99udau.exe (.not file.)
O4 - HKUS\S-1-5-21-1357036154-3372410748-1368472926-1002\..\Run: [LH9W1KOU7J] C:\Program Files\OXHZSUOT16\OXHZSUOT1.exe (.not file.)
O4 - HKUS\S-1-5-21-1357036154-3372410748-1368472926-1002\..\Run: [ED6K3TZNK4] C:\Program Files\7X6IQWUNEL\1BNPH0K69.exe (.not file.)
O4 - HKUS\S-1-5-21-1357036154-3372410748-1368472926-1002\..\Run: [N7QJKYB1EJ] C:\Program Files (x86)\DPower\76W0C742NU.exe (.not file.)
O4 - HKUS\S-1-5-21-1357036154-3372410748-1368472926-1002\..\Run: [CW31G7CE3I] C:\Program Files (x86)\BestCleaner\DPOAOW1SDF.exe (.not file.)
O4 - HKUS\S-1-5-21-1357036154-3372410748-1368472926-1002\..\RunOnce: [Software\Microsoft\Windows\CurrentVersion\RunOnce] . (...) -- C:\Users\Geneviève\AppData\Local\Temp\TMP128953.exe

---\\ Processus lancés (38) - 2s
[MD5.FD93583990FD0C857E1A78F6BCC2DF76] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [459832] [PID.432] =>.NVIDIA Corporation®
[MD5.F613C0366B35D977A7145667AAA441A8] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1286080] [PID.632] =>.NVIDIA Corporation®
[MD5.DC2BA6926FA0CDCE273CC9897F05584A] - (.ASUSTek Computer Inc. - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [107320] [PID.1396] =>.ASUSTeK Computer Inc.®
[MD5.DBC598E47E7A382E60E2A4745D41FEF9] - (.ASUS - GFNEXSrv.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896] [PID.1452] =>.ASUSTeK Computer Inc.®
[MD5.C92B0A0957ACAD3CEEF502A2CA10ACB8] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1812] =>.Adobe Systems, Incorporated®
[MD5.6EB87FDB59AABF6D19C927492DEA0D36] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128] [PID.1912] =>.Apple Inc.®
[MD5.D36B40AA8583089FE7A23693158CECF2] - (.Qualcomm Atheros Commnucations - AdminService Application.) -- C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [226944] [PID.1940] =>.Qualcomm Atheros Commnucations
[MD5.C99F8E90DE4B8F0C7FE15BB1CBCD29DC] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [635104] [PID.996] =>.Intel® Upgrade Service®
[MD5.78ABBE558F57144047F10A0F50FE4B2F] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720] [PID.1116] =>.Intel Corporation®
[MD5.D6F9E3A60884DB1222A014CD180E8B92] - (...) -- C:\Windows\SysWOW64\NetUtils2016.exe [470592] [PID.1316] =>.Superfluous.HDWallPaper
[MD5.E8DF67C63BB2AAAC7198EF4DD0349C7C] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784] [PID.1888] =>.NVIDIA Corporation®
[MD5.7B33EE6B45ADD364DDFC54FBB836EFC4] - (.NVIDIA Corporation - NVIDIA Wireless Controller Service.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe [1163712] [PID.1988] =>.NVIDIA Corporation®
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [PID.3808] =>.Google Inc®
[MD5.9656F8E29F6C3161A3E99BCD3A472FF9] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856] [PID.3824] =>.Intel Corporation®
[MD5.C98ACDE22458C8F46FD0503CB9E2D01F] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe [223112] [PID.3832] =>.Google Inc®
[MD5.EA8B5B41163A06FFA8930F5316473035] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe [273800] [PID.3840] =>.Google Inc®
[MD5.2C24DC448DBE8DB9BE1441B824C57E79] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [277824] [PID.3876] =>.Intel Corporation®
[MD5.E1A119AD21F5AFE22EB516C549306D3D] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [365376] [PID.4036] =>.Intel Corporation®
[MD5.CBC670E88771E690B8FFA8C95BB447FE] - (.ASUSTek Computer Inc. - HControl.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe [303928] [PID.2864] =>.ASUSTeK Computer Inc.®
[MD5.72349D102BF0A562308BA64B013150A6] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe [425408] [PID.3196] =>.NVIDIA Corporation®
[MD5.C570FD825751F7805CE226F68C4605DE] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [54488] [PID.1672] =>.ASUSTeK Computer Inc.®
[MD5.0BC5A4142F38A6BB35DECD01A2BC2ED7] - (.ASUS - Power4Gear Hybrid.) -- C:\Program Files\ASUS\P4G\BatteryLife.exe [1018240] [PID.3400] =>.ASUSTeK Computer Inc.®
[MD5.C6D3BB61E24F66EB976C6CC55346B5F2] - (.ASUS - ASUS InstantOn.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe [1196416] [PID.3336] =>.ASUSTeK Computer Inc.®
[MD5.C81E206D2DDBD18396506C2978F2C6BA] - (...) -- C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe [171224] [PID.3000] =>.ASUSTeK Computer Inc.®
[MD5.4F870EF9292559AB9DE6F31527A1DCBF] - (.ASUSTek Computer Inc. - KBFiltr.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe [113312] [PID.1900] =>.ASUSTeK Computer Inc.®
[MD5.0B50F07E63EE15383CDFDC26D7A3D3E3] - (.ASUSTek Computer Inc. - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [205184] [PID.2320] =>.ASUSTeK Computer Inc.®
[MD5.23075147F62C896784C66D706F38360E] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [328504] [PID.1668] =>.ASUSTeK Computer Inc.®
[MD5.B3028223BF38796C9CB5B08DA0E481FF] - (.AsusTek - ASUS Smart Gesture Loader.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe [171832] [PID.1276] =>.ASUSTeK Computer Inc.®
[MD5.563E3487FA8226968C8D5722D694388D] - (.ASUSTeK Computer Inc. - ASUS Quick Gesture Exe.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe [22840] [PID.3624] =>.ASUSTeK Computer Inc.®
[MD5.25A7E7174C622D3B8D0D2681EE87E4FA] - (.ASUSTeK Computer Inc. - ASUS Quick Gesture Exe.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe [20792] [PID.1512] =>.ASUSTeK Computer Inc.®
[MD5.00000000000000000000000000000000] - (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe [0] [PID.860] =>.Intel Corporation
[MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxsrvc Module.) -- C:\WINDOWS\system32\igfxsrvc.exe [0] [PID.3676] =>.Intel Corporation
[MD5.CA74DAB2ADB24BFFD01166F0A4179FB6] - (.AsusTek - ASUS Smart Gesture Center.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe [272184] [PID.1820] =>.ASUSTeK Computer Inc.®
[MD5.CAF861C79395C9A77DA707AF23C3BA92] - (.AsusTek - ASUS Smart Gesture Helper.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe [170296] [PID.312] =>.ASUSTeK Computer Inc.®
[MD5.B3097A013CD76B3B47A2FF18BFE1AC1D] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2456120] [PID.1280] =>.NVIDIA Corporation®
[MD5.76F78018F45E7F92164CEA5020176933] - (.Microsoft Corporation. - Microsoft SeaPort Search Enhancement Broker.) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.EXE [247968] [PID.2592] =>.Microsoft Corporation®
[MD5.23345F9256FFB4C68A75F2127DD6C21D] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [510920] [PID.4908] =>.Mozilla Corporation®
[MD5.5A06EADAEFF11A4541920EF8622378C4] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Geneviève\Downloads\ZHPDiag3.exe [2612224] [PID.5096] =>.Nicolas Coolman

---\\ Google Chrome, Démarrage,Recherche,Extensions (3) - 0s
G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security =>.Avast Software s.r.o
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pcoohmdcpejoeggdnihdfhohjgdbllgm] Avira SearchFree Toolbar plus Web Protection

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (22) - 4s
P2 - EXT: (.Citrix Systems, Inc. - Citrix CCM SDK DLL (Win32).) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\CCMSDK.dll =>.Citrix Systems, Inc.®
P2 - EXT: (.Citrix Systems, Inc. - Program Neighborhood CGPCFG dll.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\cgpcfg.dll =>.Citrix Systems, Inc.®
P2 - EXT: (.Citrix Systems, Inc. - CGP Core.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\CgpCore.dll {70615A8B5411E7A9ADA3BE438DDE3439} =>.Citrix Systems, Inc.
P2 - EXT: (.Citrix Systems, Inc. - Citrix online plug-in Configuration DLL (Wi.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\confmgr.dll =>.Citrix Systems, Inc.®
P2 - EXT: (.Citrix Systems, Inc. - Citrix ICA Client Logging DLL.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\ctxlogging.dll {70615A8B5411E7A9ADA3BE438DDE3439} =>.Citrix Systems, Inc.
P2 - EXT: (.Citrix Systems, Inc. - Citrix online plug-in MUI DLL (Win32).) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\ctxmui.dll =>.Citrix Systems, Inc.®
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\ICAClObj.class
P2 - EXT: (.Citrix Systems, Inc. - Citrix Configuration Manager.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\icafile.dll =>.Citrix Systems, Inc.®
P2 - EXT: (.Citrix Systems, Inc. - Citrix online plug-in Logon (Win32).) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\icalogon.dll {70615A8B5411E7A9ADA3BE438DDE3439} =>.Citrix Systems, Inc.
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npicaN.dll =>.Citrix Systems, Inc.®
P2 - EXT: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated®
P2 - EXT: (.Adobe Inc. - Acrobate Reader.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.FRA =>.Adobe Inc.
P2 - EXT: (.Citrix Systems, Inc. - Citrix SSL SDK (OpenSSL).) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\sslsdk_b.dll {70615A8B5411E7A9ADA3BE438DDE3439} =>.Citrix Systems, Inc.
P2 - EXT: (.Citrix Systems, Inc. - TCP Proxy Service.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\TcpPServ.dll {70615A8B5411E7A9ADA3BE438DDE3439} =>.Citrix Systems, Inc.
P2 - EXT FILE: (.Download YouTube Videos as MP4 - Adds a button that lets you download Y.) -- C:\Users\Geneviève\AppData\Roaming\Mozilla\Firefox\Profiles\w2qa43bn.default\extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi =>.Download YouTube Videos as MP4
P2 - EXT FILE: (.Adblock Plus - Ads were yesterday!.) -- C:\Users\Geneviève\AppData\Roaming\Mozilla\Firefox\Profiles\w2qa43bn.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi =>.Adblock Plus
P2 - EXT: (.Avira - Segurança do navegador Avira.) -- C:\Users\Geneviève\AppData\Roaming\Mozilla\Firefox\Profiles\w2qa43bn.default\extensions\abs@avira.com =>.Avira
P2 - EXT: (.LC - Fast search.) -- C:\Users\Geneviève\AppData\Roaming\Mozilla\Firefox\Profiles\w2qa43bn.default\extensions\amcontextmenu@loucypher
P2 - EXT: (.Jeremy Gregorio - Youtube MP3 Podcaster.) -- C:\Users\Geneviève\AppData\Roaming\Mozilla\Firefox\Profiles\w2qa43bn.default\extensions\youtubemp3podcaster@jeremy.d.gregorio.com =>.Jeremy Gregorio
P2 - EXT: (...) -- C:\Users\Geneviève\AppData\Roaming\Mozilla\Firefox\Profiles\w2qa43bn.default\extensions\{6E727987-C8EA-44DA-8749-310C0FBE3C3E}
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_186.dll =>.Adobe Systems Incorporated
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll =>.Apple Inc.

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (9) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://pesonal-spage.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve =>.Microsoft Corporation
R1 - HKEY_USERS\S-1-5-21-1357036154-3372410748-1368472926-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve =>.Microsoft Corporation
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (6) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (74)

---\\ Browser Helper Object de navigateur (BHO) (4) - 0s
O2 - BHO: IESpeakDoc [64Bits] - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} (.Orphan.)
O2 - BHO: ValueApps Loader [64Bits] - {93DBF2BB-A2B3-4683-A92E-57E60751F346} (.Orphan.)
O2 - BHO: Bing Bar Helper [64Bits] - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} . (.Microsoft Corporation. - Extensions du client Bing.) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll =>.Microsoft Corporation®
O2 - BHO: Adblock Plus for IE Browser Helper Object [64Bits] - {FFCB3198-32F3-4E8B-9539-4324694ED664} . (.Adblock Plus - Adblock Plus Module.) -- C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll =>.Adblock Plus

---\\ Raccourcis Global Startup (93) - 6s
O4 - GS\Desktop [Administrateur]: Cheat Engine.lnk . (...) C:\Program Files (x86)\Cheat Engine 6.3\Cheat Engine.exe =>.Cheat Engine®
O4 - GS\Desktop [Administrateur]: CINEMA 4D R14 64 Bit.lnk . (.MAXON Computer GmbH - CINEMA 4D ®.) C:\Program Files\MAXON\CINEMA 4D R14\CINEMA 4D 64 Bit.exe =>.MAXON Computer GmbH®
O4 - GS\Desktop [Administrateur]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleane.) C:\Users\Geneviève\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Geneviève\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (...) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --disable-quic
O4 - GS\Quicklaunch [Administrateur]: Gооglе Chrоme.lnk . (...) C:\Users\Geneviève\AppData\Roaming\Browsers\exe.emorhc.bat
O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (...) C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\Quicklaunch [Administrateur]: Lаunch Internеt Ехрlorer Вrowser.lnk . (...) C:\Users\Geneviève\AppData\Roaming\Browsers\exe.erolpxei.bat
O4 - GS\Quicklaunch [Administrateur]: XMind 2013.lnk . (...) F:\XMind\XMind.exe
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\TaskBar [Administrateur]: Intеrnet Eхplorеr.lnk . (...) C:\Users\Geneviève\AppData\Roaming\Browsers\exe.erolpxei.bat
O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Administrateur]: OpenOffice Writer.lnk . (.Apache Software Foundation - OpenOffice Writer.) C:\Program Files (x86)\OpenOffice 4\program\swriter.exe =>.Apache Software Foundation
O4 - GS\TaskBar [Administrateur]: Моzilla Firеfox.lnk . (...) C:\Users\Geneviève\AppData\Roaming\Browsers\exe.xoferif.bat
O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (...) C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\Programs [Administrateur]: Intеrnet Exрlоrеr.lnk . (...) C:\Users\Geneviève\AppData\Roaming\Browsers\exe.erolpxei.bat
O4 - GS\Programs [Administrateur]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Geneviève\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: Windows.lnk . (...) C:\Windows.old
O4 - GS\Desktop [Geneviève]: Cheat Engine.lnk . (...) C:\Program Files (x86)\Cheat Engine 6.3\Cheat Engine.exe =>.Cheat Engine®
O4 - GS\Desktop [Geneviève]: CINEMA 4D R14 64 Bit.lnk . (.MAXON Computer GmbH - CINEMA 4D ®.) C:\Program Files\MAXON\CINEMA 4D R14\CINEMA 4D 64 Bit.exe =>.MAXON Computer GmbH®
O4 - GS\Desktop [Geneviève]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleane.) C:\Users\Geneviève\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Geneviève]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Geneviève\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Geneviève]: Google Chrome.lnk . (...) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --disable-quic
O4 - GS\Quicklaunch [Geneviève]: Gооglе Chrоme.lnk . (...) C:\Users\Geneviève\AppData\Roaming\Browsers\exe.emorhc.bat
O4 - GS\Quicklaunch [Geneviève]: Launch Internet Explorer Browser.lnk . (...) C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\Quicklaunch [Geneviève]: Lаunch Internеt Ехрlorer Вrowser.lnk . (...) C:\Users\Geneviève\AppData\Roaming\Browsers\exe.erolpxei.bat
O4 - GS\Quicklaunch [Geneviève]: XMind 2013.lnk . (...) F:\XMind\XMind.exe
O4 - GS\sendTo [Geneviève]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Geneviève]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\TaskBar [Geneviève]: Intеrnet Eхplorеr.lnk . (...) C:\Users\Geneviève\AppData\Roaming\Browsers\exe.erolpxei.bat
O4 - GS\TaskBar [Geneviève]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Geneviève]: OpenOffice Writer.lnk . (.Apache Software Foundation - OpenOffice Writer.) C:\Program Files (x86)\OpenOffice 4\program\swriter.exe =>.Apache Software Foundation
O4 - GS\TaskBar [Geneviève]: Моzilla Firеfox.lnk . (...) C:\Users\Geneviève\AppData\Roaming\Browsers\exe.xoferif.bat
O4 - GS\Programs [Geneviève]: Internet Explorer.lnk . (...) C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\Programs [Geneviève]: Intеrnet Exрlоrеr.lnk . (...) C:\Users\Geneviève\AppData\Roaming\Browsers\exe.erolpxei.bat
O4 - GS\Programs [Geneviève]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Geneviève\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Geneviève]: Windows.lnk . (...) C:\Windows.old
O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: ASUS Install.lnk . (.ASUSTek Computer INC. - AsInsWiz.) C:\eSupport\eDriver\AsInsWiz.exe =>.ASUSTeK Computer Inc.®
O4 - GS\CommonDesktop [Public]: ASUS Instant Connect Installer.lnk . (...) C:\windows\Installer\{89ECB85A-D933-4CEA-9116-5CBC9C2ED95B}\_77CD0D17CE4BC69D3FCD39.exe
O4 - GS\CommonDesktop [Public]: ASUS N Series Demo.lnk . (...) C:\Windows\Installer\{246B4AFF-6540-4B72-93E8-B9EB86D37589}\_0CD494262299C24E9E55F1.exe
O4 - GS\CommonDesktop [Public]: ASUS Tutor.lnk . (...) C:\windows\Installer\{58172D66-2F69-4215-9AEC-ED8196023736}\_E2D96973328BFA48EC703B.exe
O4 - GS\CommonDesktop [Public]: Dragon NaturallySpeaking 11.0.lnk . (.Acresso Software Inc. - InstallShield.) C:\Windows\Installer\{EFFA53BC-8C04-2E21-3D90-A13B1697B0CA}\NatSpeakD_Shortcut_EFFA53BC8C042E213D90A13B1697B0CA.exe =>.Nuance Communications, Inc.®
O4 - GS\CommonDesktop [Public]: Driver Updater.lnk . (.MEDIA FOG LTD. - Driver Updater.) C:\Program Files (x86)\Carambis\Driver Updater\dupdater.exe {495CD4660DC23A429838971E58CFF10B}
O4 - GS\CommonDesktop [Public]: eManual.Lnk . (.ASUSTek Computer Inc. - EManual Application.) C:\eSupport\Manual\eManual.exe =>.ASUSTeK Computer Inc.®
O4 - GS\CommonDesktop [Public]: Google SketchUp 8.lnk . (.Google, Inc. - SketchUp Application.) C:\Program Files (x86)\Google\Google SketchUp 8\SketchUp.exe =>.Google, Inc.
O4 - GS\CommonDesktop [Public]: Google Earth.lnk . (.Google - Google Earth.) C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe =>.Google
O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Mp3tag.lnk . (.Florian Heidenreich - Mp3tag - the universal Tag editor.) C:\Program Files (x86)\Mp3tag\Mp3tag.exe =>.Florian Heidenreich®
O4 - GS\CommonDesktop [Public]: OpenOffice 4.0.1.lnk . (.Apache Software Foundation - OpenOffice 4.0.1.) C:\Program Files (x86)\OpenOffice 4\program\soffice.exe =>.Apache Software Foundation
O4 - GS\CommonDesktop [Public]: Paint.NET.lnk . (.dotPDN LLC - .) C:\Program Files (x86)\Paint.NET\PaintDotNet.exe =>.dotPDN LLC
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe =>.Skype Technologies
O4 - GS\CommonDesktop [Public]: Waves MAXXAudio.lnk . (.Waves Audio Ltd. - .) C:\Program Files (x86)\Realtek\Audio\HDA\MaxxAudioControl64.exe =>.Waves Audio Ltd.
O4 - GS\CommonDesktop [Public]: WebStorage.lnk . (.ASUS Cloud Corporation - ASUS WebStorage Panel.) C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\AsusWSPanel.exe =>.ASUS Cloud Corporation®
O4 - GS\Programs [Public]: Internet Explorer.lnk . (...) C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\Programs [Public]: Intеrnet Exрlоrеr.lnk . (...) C:\Users\Geneviève\AppData\Roaming\Browsers\exe.erolpxei.bat
O4 - GS\Programs [Public]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Geneviève\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Windows.lnk . (...) C:\Windows.old
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\Windows\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Flexera Software LLC
O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe =>.Apple Inc.
O4 - GS\ProgramsCommon [Public]: Audacity.lnk . (.The Audacity Team - Audacity®, the Free, Cross-Platform Sound E.) C:\Audacity\audacity.exe =>.The Audacity Team
O4 - GS\ProgramsCommon [Public]: Camera.lnk . (.Microsoft Corporation - Camera.) C:\Windows\Camera\Camera.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: Citrix Receiver.lnk . (.Citrix Systems, Inc. - Citrix Receiver.) C:\Program Files (x86)\Citrix\SelfServicePlugin\SelfService.exe -showAppPicker =>.Citrix Systems, Inc.®
O4 - GS\ProgramsCommon [Public]: FileManager.lnk . (.Microsoft Corporation - OneDrive.) C:\Windows\FileManager\FileManager.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: GIMP 2.lnk . (.Spencer Kimball, Peter Mattis and the GIMP Developmen - GNU Image Manipulation Program.) C:\Program Files\GIMP 2\bin\gimp-2.8.exe =>.Open Source Developer, Jernej Simončič®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\Windows\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Microsoft Office.lnk . (.Microsoft Corporation - Microsoft Office.) C:\Program Files (x86)\Microsoft Office\Office15\FIRSTRUN.EXE /OEM =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Movie Maker.lnk . (.Microsoft Corporation - Movie Maker.) C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: Paint.NET.lnk . (.dotPDN LLC - .) C:\Program Files (x86)\Paint.NET\PaintDotNet.exe =>.dotPDN LLC
O4 - GS\ProgramsCommon [Public]: Photo Gallery.lnk . (.Microsoft Corporation - Photo Gallery.) C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: PhotosApp.lnk . (.Microsoft Corporation - Photos.) C:\Windows\FileManager\PhotosApp.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: Search.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe -sta {C90FB8CA-3295-4462-A721-2935E83694BA} =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Live Mail.lnk . (.Microsoft Corporation - Windows Live Mail.) C:\Program Files (x86)\Windows Live\Mail\wlmail.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Windows Live Messenger.lnk . (.Microsoft Corporation - Windows Live Messenger.) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Store.lnk . (...) C:\Windows\WinStore\WinStore.htm
O4 - GS\ProgramsCommon [Public]: Моzilla Firefоx.lnk . (...) C:\Users\Geneviève\AppData\Roaming\Browsers\exe.xoferif.bat

---\\ Modification Domaine/Adresses DNS (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{108DBA44-16FE-44F8-944D-3001899D0C53}: DhcpNameServer = 192.168.1.1 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{C5117A88-B089-4DB4-95A7-2BC274725015}: DhcpNameServer = 192.168.2.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{C5117A88-B089-4DB4-95A7-2BC274725015}: DhcpDomain = adavid.fr

---\\ Protocole additionnel (40) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation®
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation®
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation®
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-ica [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®
O18 - Filter: application/x-ica; charset=euc-jp [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®
O18 - Filter: application/x-ica; charset=ISO-8859-1 [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®
O18 - Filter: application/x-ica; charset=MS936 [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®
O18 - Filter: application/x-ica; charset=MS949 [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®
O18 - Filter: application/x-ica; charset=MS950 [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®
O18 - Filter: application/x-ica; charset=UTF-8 [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®
O18 - Filter: application/x-ica; charset=UTF8 [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®
O18 - Filter: application/x-ica;charset=euc-jp [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®
O18 - Filter: application/x-ica;charset=ISO-8859-1 [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®
O18 - Filter: application/x-ica;charset=MS936 [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®
O18 - Filter: application/x-ica;charset=MS949 [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®
O18 - Filter: application/x-ica;charset=MS950 [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®
O18 - Filter: application/x-ica;charset=UTF-8 [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®
O18 - Filter: application/x-ica;charset=UTF8 [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: ica [64Bits] - {CFB6322E-CC85-4d1b-82C7-893888A236BC} . (.Citrix Systems, Inc. - Citrix Receiver ICAMimeFilter DLL.) -- C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll =>.Citrix Systems, Inc.®

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (1) - 0s
O20 - AppInit_DLLs: . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 376.) - C:\Windows\system32\nvinitx.dll =>.NVIDIA Corporation

---\\ Logiciels installés (137) - 20s
O42 - Logiciel: 7-Zip 9.22beta - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip =>.Igor Pavlov
O42 - Logiciel: Adblock Plus for IE - (..) [HKLM][64Bits] -- {fd97d1e2-368a-4cd9-af63-8eeff938044a}
O42 - Logiciel: Adblock Plus for IE (32-bit and 64-bit) - (.Eyeo GmbH.) [HKLM][64Bits] -- {C23EE7CE-C1A3-4F94-A8F0-9E0AC9C6DE6E} =>.Eyeo GmbH
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Flash Player 24 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824205020} =>.Adobe Systems Incorporated
O42 - Logiciel: Advanced RAR Password Recovery (remove only) - (..) [HKLM][64Bits] -- Advanced RAR Password Recovery
O42 - Logiciel: Advanced ZIP Password Recovery (remove only) - (..) [HKLM][64Bits] -- Advanced ZIP Password Recovery
O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- {01097D6A-8EC6-476D-A336-2B2596C39175} =>.Alcor Micro Corp.
O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- AmUStor =>.Alcor Micro Corp.
O42 - Logiciel: Ansel - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel =>.NVIDIA Corporation
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {7FE25256-B7C1-480D-B736-10A67A833AEA} =>.Apple Inc.
O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {B255D495-4734-4E9B-B4F5-96702FD4A7B9} =>.Apple Inc.
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {5D61F006-168C-4B8B-B7FD-F113C10AE0E4} =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc.
O42 - Logiciel: ASUS Instant Connect - (.ASUS.) [HKLM][64Bits] -- {89ECB85A-D933-4CEA-9116-5CBC9C2ED95B} =>.ASUS
O42 - Logiciel: ASUS Instant Key - (.ASUS.) [HKLM][64Bits] -- {D97A1B80-131F-4692-9543-E652956D8B99} =>.ASUS
O42 - Logiciel: ASUS InstantOn - (.ASUS.) [HKLM][64Bits] -- {749F674B-2674-47E8-879C-5626A06B2A91} =>.ASUS
O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158} =>.ASUS
O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4} =>.ASUS
O42 - Logiciel: ASUS N Series Demo - (.ASUS.) [HKLM][64Bits] -- {246B4AFF-6540-4B72-93E8-B9EB86D37589} =>.ASUS
O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {9B6239BF-4E85-4590-8D72-51E30DB1A9AA} =>.ASUS
O42 - Logiciel: ASUS Screen Saver - (.ASUS.) [HKLM][64Bits] -- {0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2} =>.ASUS
O42 - Logiciel: ASUS Smart Gesture - (.ASUS.) [HKLM][64Bits] -- {4D3286A6-F6AB-498A-82A4-E4F040529F3D} =>.ASUS
O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D} =>.ASUS
O42 - Logiciel: ASUS Tutor - (.ASUS.) [HKLM][64Bits] -- {58172D66-2F69-4215-9AEC-ED8196023736} =>.ASUS
O42 - Logiciel: ASUS Video Magic - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} =>.CyberLink Corp.
O42 - Logiciel: ASUS Video Magic - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} =>.CyberLink Corp.
O42 - Logiciel: ASUS WebStorage Sync Agent - (.ASUS Cloud Corporation.) [HKLM][64Bits] -- ASUS WebStorage =>.ASUS Cloud Corporation
O42 - Logiciel: ASUSDVD - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B} =>.CyberLink Corp.
O42 - Logiciel: ASUSDVD - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B} =>.CyberLink Corp.
O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE} =>.ASUS
O42 - Logiciel: Audacity 2.0.5 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 =>.Audacity Team
O42 - Logiciel: Avira Free Antivirus v14.0.7.342 - (.Avira.) [HKLM][64Bits] -- Avira AntiVir Desktop =>.Avira
O42 - Logiciel: Avira v1.1.34.19732 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {b5675cc4-ab8b-4945-8c1d-4c5479556d6a} =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM][64Bits] -- {3365E735-48A6-4194-9988-CE59AC5AE503} =>.Microsoft Corporation
O42 - Logiciel: BlueStacks Notification Center - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- {4FCF716C-CEB4-499D-AFB8-A5375105EC2A} =>.BlueStack Systems, Inc.
O42 - Logiciel: BMI Flight Simulator 0.2.1 - (.BMI nv/sa.) [HKLM][64Bits] -- {070CF190-681A-4c62-A0C1-B0B1CFD13A88}_is1
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} =>.Apple Inc.
O42 - Logiciel: Car Mechanic Simulator 2014 Demo - (.Red Dot Games.) [HKLM][64Bits] -- Steam App 277990 =>.Valve®
O42 - Logiciel: Carambis Driver Updater - (.MEDIA FOG LTD.) [HKLM][64Bits] -- Driver Updater {495CD4660DC23A429838971E58CFF10B} =>.MEDIA FOG LTD
O42 - Logiciel: Cheat Engine 6.3 - (.Cheat Engine.) [HKLM][64Bits] -- Cheat Engine 6.3_is1 =>.Cheat Engine®
O42 - Logiciel: CINEMA 4D R14 - (..) [HKLM][64Bits] -- CINEMA 4D R14
O42 - Logiciel: Citrix Authentication Manager - (.Citrix Systems, Inc..) [HKLM][64Bits] -- {D2D3391C-150F-455F-8A90-A09A3C038710} =>.Citrix Systems, Inc.
O42 - Logiciel: Citrix Online Plug-in (Web) - (.Citrix Systems, Inc..) [HKLM][64Bits] -- {2FC7287D-39DD-4A84-9806-D27D3CCDC51B} =>.Citrix Systems, Inc.
O42 - Logiciel: Citrix Receiver - (.Citrix Systems, Inc..) [HKLM][64Bits] -- CitrixOnlinePluginPackWeb =>.Citrix Systems, Inc.®
O42 - Logiciel: Citrix Receiver (DV) - (.Citrix Systems, Inc..) [HKLM][64Bits] -- {14BF9858-4B14-4F18-8605-B8ABEC608022} =>.Citrix Systems, Inc.
O42 - Logiciel: Citrix Receiver (Redirection Flash HDX) - (.Citrix Systems, Inc..) [HKLM][64Bits] -- {382D96CA-9A35-42B5-8D7A-4C486839EF98} =>.Citrix Systems, Inc.
O42 - Logiciel: Citrix Receiver (USB) - (.Citrix Systems, Inc..) [HKLM][64Bits] -- {0F045DBA-70D7-4579-AE65-2755C2A4710A} =>.Citrix Systems, Inc.
O42 - Logiciel: Citrix Receiver Inside - (.Citrix Systems, Inc..) [HKLM][64Bits] -- {F28B0BE3-C022-434B-975D-9AEF61352A2A} =>.Citrix Systems, Inc.
O42 - Logiciel: Citrix Receiver Updater - (.Citrix Systems, Inc..) [HKLM][64Bits] -- {0EE23957-0BA5-48F3-AFAF-912C35815723} =>.Citrix Systems, Inc.
O42 - Logiciel: Citrix Receiver(Aero) - (.Citrix Systems, Inc..) [HKLM][64Bits] -- {1A8D40F8-C54A-4CF5-9F3D-3AB231F946F2} =>.Citrix Systems, Inc.
O42 - Logiciel: CyberLink MediaEspresso 6.5 - (.CyberLink Corp..) [HKLM][64Bits] -- {E3739848-5329-48E3-8D28-5BBD6E8BE384} =>.CyberLink Corp.
O42 - Logiciel: CyberLink MediaEspresso 6.5 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384} =>.CyberLink Corp.
O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1} =>.CyberLink Corp.
O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} =>.CyberLink Corp.
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft
O42 - Logiciel: DCS World - (.Eagle Dynamics.) [HKLM][64Bits] -- Steam App 223750 =>.Valve®
O42 - Logiciel: Dragon NaturallySpeaking 11 - (.Nuance Communications Inc..) [HKLM][64Bits] -- {EFFA53BC-8C04-2E21-3D90-A13B1697B0CA} =>.Nuance Communications Inc.
O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} =>.Skype Limited
O42 - Logiciel: Fotogalerie - (.Microsoft Corporation.) [HKLM][64Bits] -- {56018684-241C-4D81-A4F6-CED1B5292C49} =>.Microsoft Corporation
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {43711B8E-AE78-4C83-84EC-3E86D689311C} =>.Microsoft Corporation
O42 - Logiciel: GIMP 2.8.16 - (.The GIMP Team.) [HKLM][64Bits] -- GIMP-2_is1 =>.Open Source Developer, Jernej Simončič®
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc.
O42 - Logiciel: Google SketchUp 8 - (.Google, Inc..) [HKLM][64Bits] -- {E3F4EA31-41D7-4789-9AC4-F26CDAF797BA} =>.Google, Inc.
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E} =>.Google
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation®
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX®
O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} =>.Intel Corporation
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B} =>.Intel Corporation
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {6CF1A7E2-8001-4870-9F18-3C6CDD6FE9E3} =>.Apple Inc.
O42 - Logiciel: Java 8 Update 73 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218073F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: Java DB 10.3.1.4 - (.Sun Microsystems, Inc.) [HKLM][64Bits] -- {CD49361E-3FE6-457E-90A1-9C59E29B5D02} =>.Sun Microsystems, Inc
O42 - Logiciel: Java(TM) SE Development Kit 6 Update 5 - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {32A3A4F4-B792-11D6-A78A-00B0D0160050} =>.Sun Microsystems, Inc.
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {24758B1D-9345-4538-A69A-05660F63A296} =>.Microsoft Corporation
O42 - Logiciel: LinuxLive USB Creator - (.Thibaut Lauziere.) [HKLM][64Bits] -- LinuxLive USB Creator =>.Thibaut Lauziere
O42 - Logiciel: ManiaPlanet - (.Nadeo.) [HKLM][64Bits] -- ManiaPlanet_is1 =>.NADEO®
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation®
O42 - Logiciel: Minecraft - (.Mojang.) [HKLM][64Bits] -- {1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872} =>.Mojang
O42 - Logiciel: Mises à jour NVIDIA 2.13.0.21 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation
O42 - Logiciel: Mozilla Firefox 50.1.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 50.1.0 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mp3tag v2.79 - (.Florian Heidenreich.) [HKLM][64Bits] -- Mp3tag =>.Florian Heidenreich
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} =>.Microsoft
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} =>.Microsoft
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} =>.Microsoft
O42 - Logiciel: MyBitCast 2.0 - (.ASUS.) [HKLM][64Bits] -- MyBitCast =>.ASUS
O42 - Logiciel: NVIDIA Backend - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Display Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Display Container LS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Elevated User Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.UserElevated =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA GeForce Experience 3.1.2.31 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA HD Audio Driver 1.3.18.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA LocalSystem Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.16.0318 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Message Bus for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.MessageBus =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA NetworkService Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NetworkService =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Optimus Update 2.13.0.21 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote graphique 376.33 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA ShadowPlay 2.13.0.21 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Corporation
O42 - Logiciel: Nvidia Share - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA User Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Virtual Audio 3.40.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Watchdog Plugin for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Wireless Controller Service - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService =>.NVIDIA Corporation
O42 - Logiciel: NvNodejs - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs =>.NVIDIA Corporation
O42 - Logiciel: NvTelemetry - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry =>.NVIDIA Corporation
O42 - Logiciel: Online Plug-in - (.Citrix Systems, Inc..) [HKLM][64Bits] -- {247D1CC0-7A71-4ADB-948F-E8703F0B44FB} =>.Citrix Systems, Inc.
O42 - Logiciel: OpenOffice 4.0.1 - (.Apache Software Foundation.) [HKLM][64Bits] -- {8D5D54B8-3D29-4AB4-8DA8-1868DAF941D8} =>.Apache Software Foundation
O42 - Logiciel: Paint.NET v3.5.11 - (.dotPDN LLC.) [HKLM][64Bits] -- {72EF03F5-0507-4861-9A44-D99FD4C41418} =>.dotPDN LLC
O42 - Logiciel: Panneau de configuration NVIDIA 376.33 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation
O42 - Logiciel: Qualcomm Atheros Bluetooth Suite (64) - (.Qualcomm Atheros Communications.) [HKLM][64Bits] -- {A84A4FB1-D703-48DB-89E0-68B6499D2801} =>.Qualcomm Atheros Communications
O42 - Logiciel: Qualcomm Atheros Client Installation Program - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} =>.Qualcomm Atheros
O42 - Logiciel: Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Dr - (.Qualcomm Atheros Communications Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} =>.Qualcomm Atheros Communications Inc.
O42 - Logiciel: Raccolta foto - (.Microsoft Corporation.) [HKLM][64Bits] -- {10B9CA2E-95AD-4AFB-A83E-27241D3EB5D3} =>.Microsoft Corporation
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Self-Service Plug-in - (.Citrix Systems, Inc..) [HKLM][64Bits] -- {C787BD95-A1B0-40DF-864F-E75182E828AC} =>.Citrix Systems, Inc.
O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054} =>.McAfee
O42 - Logiciel: SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation
O42 - Logiciel: SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController =>.NVIDIA Corporation
O42 - Logiciel: Skype™ 7.29 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: Starbound - (..) [HKLM][64Bits] -- Steam App 211820 =>.Valve®
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve®
O42 - Logiciel: Supercopier 1.2.3.0 - (.Supercopier.) [HKLM][64Bits] -- Supercopier =>.Supercopier
O42 - Logiciel: Take On Helicopters - (..) [HKLM][64Bits] -- Take On Helicopters
O42 - Logiciel: TuxGuitar 1.2 - (..) [HKLM][64Bits] -- TuxGuitar_0
O42 - Logiciel: Visual C++ 9.0 Runtime for Dragon NaturallySpeaking 64bit (x64) - (.Nuance Communications Inc..) [HKLM][64Bits] -- {4A5A427F-BA39-4BF0-7777-9A47FBE60C9F} =>.Nuance Communications Inc.
O42 - Logiciel: Vulkan Run Time Libraries 1.0.26.0 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.26.0 =>.LunarG, Inc.®
O42 - Logiciel: Windows Driver Package - ASUS (ATP) Mouse (01/10/2013 1.0.0.170) - (.ASUS.) [HKLM][64Bits] -- 4A9DE1E9EBC800B7F01739D4DE7363EF6751BDF5 =>.ASUS
O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D} =>.ASUS
O42 - Logiciel: WinRAR 5.01 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: XMind 2013 (v3.4.1) - (.XMind Ltd..) [HKLM][64Bits] -- XMind_is1 =>.XMind Ltd.

---\\ HKCU & HKLM Software Keys (136) - 20s
HKLM\SOFTWARE\Wow6432Node\7-Zip =>.Igor Pavlov
HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner =>.Malwarebytes
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\AKOS_TP
HKLM\SOFTWARE\Wow6432Node\anset
HKLM\SOFTWARE\Wow6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\Wow6432Node\ASIO =>.Steinberg Media Technologies
HKLM\SOFTWARE\Wow6432Node\AsLdr =>.ASUSTeK
HKLM\SOFTWARE\Wow6432Node\ASUS =>.ASUS
HKLM\SOFTWARE\Wow6432Node\Atheros =>.Atheros
HKLM\SOFTWARE\Wow6432Node\Avira =>.Avira
HKLM\SOFTWARE\Wow6432Node\Blizzard Entertainment =>.Blizzard Entertainment
HKLM\SOFTWARE\Wow6432Node\BlueStacks =>.BlueStack Systems, Inc.
HKLM\SOFTWARE\Wow6432Node\Bohemia Interactive Studio =>.Bohemia Interactive Studio
HKLM\SOFTWARE\Wow6432Node\Chewokguering
HKLM\SOFTWARE\Wow6432Node\Chiverk
HKLM\SOFTWARE\Wow6432Node\Citrix =>.Citrix
HKLM\SOFTWARE\Wow6432Node\Corel =>.Corel
HKLM\SOFTWARE\Wow6432Node\CyberLink =>.CyberLink Corporation
HKLM\SOFTWARE\Wow6432Node\Dragon Systems =>.Dragon Systems Inc
HKLM\SOFTWARE\Wow6432Node\ECAREME =>.Ecareme
HKLM\SOFTWARE\Wow6432Node\ej-technologies =>.ej-technologies
HKLM\SOFTWARE\Wow6432Node\Elcom =>.Elcom
HKLM\SOFTWARE\Wow6432Node\FEE5619E10587F83F92A44ECE4C7AF89 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Florian Heidenreich =>.Florian Heidenreich
HKLM\SOFTWARE\Wow6432Node\Google =>.Google
HKLM\SOFTWARE\Wow6432Node\IM Providers =>.IM Providers
HKLM\SOFTWARE\Wow6432Node\InstallShield =>.InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\Wow6432Node\jhtrsq
HKLM\SOFTWARE\Wow6432Node\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\Wow6432Node\Lake =>.Lake Sofware
HKLM\SOFTWARE\Wow6432Node\Licenses =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node\LinuxLive USB Creator =>.LinuxLive Team
HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\Wow6432Node\McAfee =>.McAfee Inc.
HKLM\SOFTWARE\Wow6432Node\Mojang =>.Mojang
HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugin =>.MozillaPlugin
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nuance =>.Nuance
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Wow6432Node\OpenOffice =>.SourceForge
HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros =>.Qualcomm Atheros
HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros Communications Inc. =>.Qualcomm Atheros
HKLM\SOFTWARE\Wow6432Node\Realtek =>.Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\ScanSoft =>.ScanSoft
HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype
HKLM\SOFTWARE\Wow6432Node\Sun Microsystems =>.Sun Microsystems
HKLM\SOFTWARE\Wow6432Node\SuppHelpDir =>.Toshiba Corporation
HKLM\SOFTWARE\Wow6432Node\Valve =>.Valve
HKLM\SOFTWARE\Wow6432Node\Voice =>.Legitimate
HKLM\SOFTWARE\Wow6432Node\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node\Windows =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node\WinRAR =>.WinRAR
HKLM\SOFTWARE\Wow6432Node\X-AVCSD =>.Avira Software
HKLM\SOFTWARE\Wow6432Node\XMind Ltd =>.XMind Ltd
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\7-Zip =>.Igor Pavlov
HKCU\SOFTWARE\AdblockPlus =>.Wladimir Palant
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\AskPartnerNetwork =>PUP.Optional.APNToolBar
HKCU\SOFTWARE\ASUS =>.ASUS
HKCU\SOFTWARE\Atheros =>.Atheros
HKCU\SOFTWARE\Audacity =>.Audacity
HKCU\SOFTWARE\Avira =>.Avira
HKCU\SOFTWARE\AXYGEST S.A
HKCU\SOFTWARE\Blizzard Entertainment =>.Blizzard Entertainment
HKCU\SOFTWARE\Brother =>.Brother
HKCU\SOFTWARE\Bugsplat =>.Bugsplat Game
HKCU\SOFTWARE\Carambis
HKCU\SOFTWARE\Cheat Engine =>.Dark Byte
HKCU\SOFTWARE\Citrix =>.Citrix
HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation
HKCU\SOFTWARE\Dragon Systems =>.Dragon Systems Inc
HKCU\SOFTWARE\ECAREME =>.Ecareme
HKCU\SOFTWARE\ej-technologies =>.ej-technologies
HKCU\SOFTWARE\Elcom =>.Elcom
HKCU\SOFTWARE\ELIGCHK
HKCU\SOFTWARE\Facebook =>.Facebook
HKCU\SOFTWARE\FLEXnet =>.FlexNet
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Herac =>.Herac
HKCU\SOFTWARE\i-FunBox.com =>.i-Funbox.com
HKCU\SOFTWARE\IM =>Adware.InstallCore
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\ImgBurn =>.Lightning UK
HKCU\SOFTWARE\InstallDate
HKCU\SOFTWARE\InstallShield =>.InstallShield
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\Lake =>.Lake Sofware
HKCU\SOFTWARE\LinuxLive =>.LinuxLive Team
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\MC4D =>.Magic Cube 4D
HKCU\SOFTWARE\Mine =>.Microsoft Corporation
HKCU\SOFTWARE\MiniTool Solution Ltd. =>.MiniTool Solution Ltd.
HKCU\SOFTWARE\Mojang =>.Mojang
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKCU\SOFTWARE\OpenOffice =>.SourceForge
HKCU\SOFTWARE\Paint.NET =>.Rick Brewster
HKCU\SOFTWARE\Realtek =>.Realtek
HKCU\SOFTWARE\Red Dot Games =>.Red Dot Games
HKCU\SOFTWARE\redsn0w =>.Jailbreak
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\ScanSoft =>.ScanSoft
HKCU\SOFTWARE\SCS Software =>.SCS Software
HKCU\SOFTWARE\SKYARTEC
HKCU\SOFTWARE\skype =>.Skype
HKCU\SOFTWARE\SkypeRS =>.Skype Technologies
HKCU\SOFTWARE\Software =>.Unknow
HKCU\SOFTWARE\Sysinternals =>.Sysinternals
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\Ultracopier =>.Herman Brule
HKCU\SOFTWARE\Unity =>.Unity
HKCU\SOFTWARE\Valve =>.Valve
HKCU\SOFTWARE\VFPlugin
HKCU\SOFTWARE\VNT
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft

---\\ Contenu des dossiers Programmes (309) - 53s
O43 - CFD: 19/03/2014 - [] D -- C:\Program Files\Adblock Plus for IE =>.Adblock
O43 - CFD: 27/04/2013 - [] D -- C:\Program Files\ASUS =>.ASUSTeK Computer Inc.®
O43 - CFD: 11/01/2014 - [] D -- C:\Program Files\BMI Flight Simulator
O43 - CFD: 04/03/2014 - [] D -- C:\Program Files\Bohemia Interactive =>.Bohemia Interactive
O43 - CFD: 28/11/2013 - [] D -- C:\Program Files\Bonjour =>.Apple Inc.
O43 - CFD: 09/04/2014 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 26/11/2013 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files\GIMP 2 =>.Open Source Developer, Jernej Simončič®
O43 - CFD: 14/02/2014 - [0] D -- C:\Program Files\Google =>.Google
O43 - CFD: 27/04/2013 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 21/12/2016 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 24/07/2015 - [] D -- C:\Program Files\iPod =>.Apple Inc.®
O43 - CFD: 24/07/2015 - [] D -- C:\Program Files\iTunes =>.Apple Inc.
O43 - CFD: 06/12/2014 - [] D -- C:\Program Files\MAXON =>.MAXON Computer GmbH®
O43 - CFD: 05/03/2014 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 20/12/2016 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 26/11/2013 - [] D -- C:\Program Files\Paint.NET =>.Rick Brewster
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files\PowerDataRecovery =>.MT Solution
O43 - CFD: 05/03/2014 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 05/03/2014 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 26/07/2012 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 15/08/2015 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 08/03/2014 - [] D -- C:\Program Files\Windows Live =>.Microsoft Corporation
O43 - CFD: 04/03/2015 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 04/03/2015 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 04/03/2015 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 05/03/2014 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 04/03/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 04/03/2015 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 05/03/2014 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 26/11/2016 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 04/03/2015 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\7-Zip =>.Igor Pavlov
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\AmIcoSingLun =>.Alcor Micro Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\AskPartnerNetwork =>Toolbar.AskBar
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\ASUS =>.ASUSTeK Computer Inc.®
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\BlueStacks =>.BlueStack Systems, Inc.
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Bluetooth Suite =>.ASUSTeK
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc.
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Carambis =>.Rostpay Ltd
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Cheat Engine 6.3 =>.Dark Byte
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Citrix =>.Citrix
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Euro Truck Simulator 2 =>.SCS Software s.r.o.®
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 21/12/2016 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Java =>.Oracle
O43 - CFD: 18/12/2016 - [] D -- C:\Program Files (x86)\kukanki
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\LYCEE
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\ManiaPlanet =>.Nadeo
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Microsoft SkyDrive =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 20/12/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
O43 - CFD: 20/12/2016 - [] D -- C:\Program Files (x86)\Mp3tag =>.Florian Heidenreich
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Nuance =>.Nuance
O43 - CFD: 20/12/2016 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\OpenOffice 4 =>.OpenOffice.org
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Steam =>.SteamApps
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Sun =>.Oracle
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Supercopier =>.SFX Team
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\SuperSorter
O43 - CFD: 17/12/2016 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\TuxGuitar-Jet
O43 - CFD: 20/12/2016 - [] D -- C:\Program Files (x86)\VulkanRT =>.LunarG, Inc
O43 - CFD: 15/08/2015 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH®
O43 - CFD: 21/12/2016 - [] D -- C:\Program Files (x86)\ZHPFix =>.Nicolas Coolman
O43 - CFD: 12/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov
O43 - CFD: 04/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 17/09/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 12/11/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 13/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced RAR Password Recovery
O43 - CFD: 13/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced ZIP Password Recovery =>.Elcomsoft
O43 - CFD: 12/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS =>.ASUS
O43 - CFD: 05/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Video Magic =>.CyberLink Corporation
O43 - CFD: 05/03/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUSDVD =>.ASUSTeK
O43 - CFD: 27/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira =>.Avira Software
O43 - CFD: 17/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks =>.BlueStack Systems, Inc.
O43 - CFD: 05/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BMI Flight Simulator
O43 - CFD: 05/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive =>.Bohemia Interactive
O43 - CFD: 05/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Carambis =>.Rostpay Ltd
O43 - CFD: 05/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.3 =>.Dark Byte
O43 - CFD: 15/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dragon NaturallySpeaking 11.0 =>.Dragon Systems Inc
O43 - CFD: 17/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome =>.Google Inc.
O43 - CFD: 05/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth =>.Google Earth
O43 - CFD: 05/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google SketchUp 8 =>.@Last Software
O43 - CFD: 05/03/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation
O43 - CFD: 24/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes =>.Apple Inc.
O43 - CFD: 12/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
O43 - CFD: 12/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit =>.Oracle
O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManiaPlanet =>.Nadeo
O43 - CFD: 17/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft =>.Minecraft
O43 - CFD: 18/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC Desktop
O43 - CFD: 20/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 05/03/2014 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.1 =>.SourceForge
O43 - CFD: 14/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 22/08/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 05/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam =>.SteamApps
O43 - CFD: 12/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SupremeDownloader
O43 - CFD: 04/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 08/03/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live =>.Microsoft Corporation
O43 - CFD: 15/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 05/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMind =>.XMind
O43 - CFD: 21/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP =>.Nicolas Coolman
O43 - CFD: 07/11/2016 - [] D -- C:\ProgramData\.mono =>.Legitimate
O43 - CFD: 24/07/2015 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 =>.GEAR Software, Inc.
O43 - CFD: 17/12/2016 - [] HD -- C:\ProgramData\564094614d36t4997750
O43 - CFD: 01/02/2016 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 27/04/2013 - [] D -- C:\ProgramData\AmUStor =>.Alocr Micro
O43 - CFD: 22/02/2014 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 05/03/2014 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 27/11/2012 - [] D -- C:\ProgramData\ASUS WebStorage =>.ASUSTeK
O43 - CFD: 27/11/2012 - [] D -- C:\ProgramData\ASUSLogos =>.ASUSTeK
O43 - CFD: 26/11/2013 - [] D -- C:\ProgramData\Atheros =>.Atheros
O43 - CFD: 22/03/2015 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 27/11/2014 - [] D -- C:\ProgramData\Avira =>.Avira Software
O43 - CFD: 26/03/2015 - [0] D -- C:\ProgramData\BackupPCFiles
O43 - CFD: 30/07/2016 - [] D -- C:\ProgramData\Battle.net =>.Games Software
O43 - CFD: 30/07/2016 - [] D -- C:\ProgramData\Blizzard Entertainment =>.Blizzard Entertainment
O43 - CFD: 29/03/2015 - [] D -- C:\ProgramData\BlueStacks =>.BlueStack Systems, Inc.
O43 - CFD: 21/03/2015 - [] D -- C:\ProgramData\BlueStacksSetup =>.BlueStack Systems, Inc.
O43 - CFD: 26/11/2013 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 26/11/2013 - [] D -- C:\ProgramData\ChangeFolderView =>.FolderView
O43 - CFD: 26/03/2015 - [] D -- C:\ProgramData\Citrix =>.Citrix
O43 - CFD: 22/02/2014 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 15/08/2015 - [] D -- C:\ProgramData\FLEXnet =>.Flexera Software
O43 - CFD: 26/11/2013 - [] D -- C:\ProgramData\FolderView =>.FolderView
O43 - CFD: 08/02/2014 - [] D -- C:\ProgramData\Google =>.Google
O43 - CFD: 27/04/2013 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 16/12/2013 - [] D -- C:\ProgramData\ManiaPlanet =>.Nadeo
O43 - CFD: 26/11/2013 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 11/12/2014 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 27/11/2012 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 26/11/2013 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 15/08/2015 - [] D -- C:\ProgramData\Nuance =>.Nuance
O43 - CFD: 21/12/2016 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation
O43 - CFD: 20/12/2016 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 12/03/2016 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 20/12/2016 - [] D -- C:\ProgramData\P4G =>.Portables4Gamers
O43 - CFD: 20/12/2016 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 05/03/2014 - [] D -- C:\ProgramData\PRICache =>.Microsoft Corporation
O43 - CFD: 27/04/2013 - [] D -- C:\ProgramData\Qualcomm Atheros =>.Qualcomm Atheros
O43 - CFD: 04/03/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 14/11/2016 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 26/11/2013 - [] D -- C:\ProgramData\Sun =>.Oracle
O43 - CFD: 15/05/2014 - [] D -- C:\ProgramData\Symantec =>.Symantec
O43 - CFD: 30/11/2016 - [] AD -- C:\ProgramData\Temp =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 27/04/2013 - [] D -- C:\ProgramData\USBChargerPlus =>.ASUSTeK
O43 - CFD: 01/02/2016 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 24/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Apple =>.Apple Inc.
O43 - CFD: 27/04/2013 - [] D -- C:\Program Files (x86)\Common Files\Atheros =>.Atheros
O43 - CFD: 26/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Citrix =>.Citrix
O43 - CFD: 05/03/2014 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
O43 - CFD: 15/08/2015 - [] D -- C:\Program Files (x86)\Common Files\IVA =>.Legitimate
O43 - CFD: 12/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle
O43 - CFD: 28/11/2013 - [] D -- C:\Program Files (x86)\Common Files\mcafee =>.McAfee
O43 - CFD: 05/03/2014 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation
O43 - CFD: 15/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Nuance =>.Nuance
O43 - CFD: 27/04/2013 - [] D -- C:\Program Files (x86)\Common Files\postureAgent =>.Microsoft Corporation
O43 - CFD: 27/04/2013 - [] D -- C:\Program Files (x86)\Common Files\QCA_Bluetooth =>.Qualcomm Atheros
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 14/11/2016 - [] D -- C:\Program Files (x86)\Common Files\Skype =>.Skype
O43 - CFD: 02/12/2016 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.SteamApps
O43 - CFD: 04/03/2015 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 27/11/2012 - [] D -- C:\Program Files (x86)\Common Files\Windows Live =>.Microsoft Corporation
O43 - CFD: 11/11/2015 - [] D -- C:\Users\Geneviève\AppData\Roaming\.minecraft =>.Microsoft Corporation
O43 - CFD: 07/11/2016 - [] D -- C:\Users\Geneviève\AppData\Roaming\.mono =>.Legitimate
O43 - CFD: 27/11/2013 - [] D -- C:\Users\Geneviève\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 30/11/2013 - [] D -- C:\Users\Geneviève\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 17/12/2016 - [] D -- C:\Users\Geneviève\AppData\Roaming\Arererdom
O43 - CFD: 26/11/2013 - [] D -- C:\Users\Geneviève\AppData\Roaming\ASUS =>.ASUS
O43 - CFD: 26/11/2013 - [] D -- C:\Users\Geneviève\AppData\Roaming\ASUS WebStorage =>.ASUSTeK
O43 - CFD: 26/11/2013 - [] D -- C:\Users\Geneviève\AppData\Roaming\Atheros =>.Atheros
O43 - CFD: 03/07/2016 - [] D -- C:\Users\Geneviève\AppData\Roaming\Audacity =>.Audacity
O43 - CFD: 15/01/2014 - [] D -- C:\Users\Geneviève\AppData\Roaming\Avira =>.Avira Software
O43 - CFD: 13/01/2014 - [] RD -- C:\Users\Geneviève\AppData\Roaming\Brother =>.Brother
O43 - CFD: 16/02/2014 - [] D -- C:\Users\Geneviève\AppData\Roaming\Carambis =>.Rostpay Ltd
O43 - CFD: 29/06/2015 - [] D -- C:\Users\Geneviève\AppData\Roaming\com.prezi.PreziDesktop
O43 - CFD: 22/02/2014 - [] D -- C:\Users\Geneviève\AppData\Roaming\CyberLink =>.CyberLink Corporation
O43 - CFD: 17/07/2016 - [] D -- C:\Users\Geneviève\AppData\Roaming\Desktop =>.Microsoft Corporation
O43 - CFD: 12/05/2014 - [] D -- C:\Users\Geneviève\AppData\Roaming\DownloadManager =>.DownloadManager
O43 - CFD: 15/08/2015 - [] D -- C:\Users\Geneviève\AppData\Roaming\FLEXnet =>.Flexera Software
O43 - CFD: 30/11/2013 - [] D -- C:\Users\Geneviève\AppData\Roaming\Google =>.Google
O43 - CFD: 26/03/2015 - [] D -- C:\Users\Geneviève\AppData\Roaming\ICAClient =>.Citrix
O43 - CFD: 05/03/2014 - [] D -- C:\Users\Geneviève\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 12/03/2016 - [] D -- C:\Users\Geneviève\AppData\Roaming\iFunbox_UserCache =>.iFunbox DevTeam
O43 - CFD: 03/07/2014 - [] D -- C:\Users\Geneviève\AppData\Roaming\ImgBurn =>.Lightning UK
O43 - CFD: 11/11/2015 - [] D -- C:\Users\Geneviève\AppData\Roaming\java =>.Oracle
O43 - CFD: 26/11/2013 - [] D -- C:\Users\Geneviève\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 06/12/2014 - [] D -- C:\Users\Geneviève\AppData\Roaming\MAXON =>.Maxon
O43 - CFD: 18/07/2016 - [] D -- C:\Users\Geneviève\AppData\Roaming\MCorp
O43 - CFD: 08/03/2014 - [] SD -- C:\Users\Geneviève\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Users\Geneviève\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 20/12/2016 - [] D -- C:\Users\Geneviève\AppData\Roaming\Mp3tag =>.Florian Heidenreich
O43 - CFD: 15/08/2015 - [] D -- C:\Users\Geneviève\AppData\Roaming\Nuance =>.Nuance
O43 - CFD: 27/11/2013 - [] D -- C:\Users\Geneviève\AppData\Roaming\NVIDIA =>.nVidia Corporation
O43 - CFD: 28/11/2013 - [] D -- C:\Users\Geneviève\AppData\Roaming\OpenOffice =>.SourceForge
O43 - CFD: 17/12/2016 - [] D -- C:\Users\Geneviève\AppData\Roaming\Profiles =>.Microsoft Corporation
O43 - CFD: 23/07/2015 - [] D -- C:\Users\Geneviève\AppData\Roaming\redsn0w
O43 - CFD: 22/02/2014 - [] D -- C:\Users\Geneviève\AppData\Roaming\Rovio =>.Rovio
O43 - CFD: 14/11/2016 - [] D -- C:\Users\Geneviève\AppData\Roaming\Skype =>.Skype
O43 - CFD: 12/03/2016 - [] D -- C:\Users\Geneviève\AppData\Roaming\Sun =>.Oracle
O43 - CFD: 29/03/2015 - [0] D -- C:\Users\Geneviève\AppData\Roaming\Windows Live Writer =>.Microsoft Corporation
O43 - CFD: 04/12/2013 - [] D -- C:\Users\Geneviève\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 26/04/2014 - [] D -- C:\Users\Geneviève\AppData\Roaming\xm1 =>.Canon Inc.
O43 - CFD: 08/02/2014 - [] D -- C:\Users\Geneviève\AppData\Roaming\XMind =>.XMind
O43 - CFD: 21/12/2016 - [] D -- C:\Users\Geneviève\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 15/02/2016 - [] D -- C:\Users\Geneviève\AppData\Local\Adobe =>.Adobe
O43 - CFD: 07/12/2013 - [] D -- C:\Users\Geneviève\AppData\Local\Apple =>.Apple Inc.
O43 - CFD: 28/11/2013 - [] D -- C:\Users\Geneviève\AppData\Local\Apple Computer =>.Apple Inc.
O43 - CFD: 05/03/2014 - [0] SHD -- C:\Users\Geneviève\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 26/11/2013 - [] D -- C:\Users\Geneviève\AppData\Local\ASUS =>.ASUS
O43 - CFD: 17/12/2016 - [0] D -- C:\Users\Geneviève\AppData\Local\Atajikterliry
O43 - CFD: 07/11/2016 - [] D -- C:\Users\Geneviève\AppData\Local\Blizzard =>.Blizzard
O43 - CFD: 30/07/2016 - [] D -- C:\Users\Geneviève\AppData\Local\Blizzard Entertainment =>.Blizzard Entertainment
O43 - CFD: 21/03/2015 - [] D -- C:\Users\Geneviève\AppData\Local\Bluestacks =>.BlueStack Systems, Inc.
O43 - CFD: 26/11/2013 - [] D -- C:\Users\Geneviève\AppData\Local\BMExplorer =>.BMExplorer
O43 - CFD: 01/02/2016 - [] D -- C:\Users\Geneviève\AppData\Local\CEF =>.CEF
O43 - CFD: 26/03/2015 - [] D -- C:\Users\Geneviève\AppData\Local\Citrix =>.Citrix
O43 - CFD: 05/03/2014 - [] D -- C:\Users\Geneviève\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 09/06/2014 - [] D -- C:\Users\Geneviève\AppData\Local\Cyberlink =>.CyberLink Corporation
O43 - CFD: 24/02/2014 - [0] D -- C:\Users\Geneviève\AppData\Local\DCS
O43 - CFD: 17/07/2016 - [] D -- C:\Users\Geneviève\AppData\Local\deoentderzgeserasp
O43 - CFD: 20/12/2016 - [] D -- C:\Users\Geneviève\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 25/08/2014 - [0] D -- C:\Users\Geneviève\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 13/09/2015 - [0] SHD -- C:\Users\Geneviève\AppData\Local\EmieBrowserModeList =>.Enterprise mode Site List Mgr
O43 - CFD: 13/09/2015 - [0] SHD -- C:\Users\Geneviève\AppData\Local\EmieSiteList =>.Enterprise mode Site List Mgr
O43 - CFD: 13/09/2015 - [0] SHD -- C:\Users\Geneviève\AppData\Local\EmieUserList =>.Enterprise mode Site List Mgr
O43 - CFD: 07/02/2014 - [] D -- C:\Users\Geneviève\AppData\Local\Facebook =>.Facebook
O43 - CFD: 28/05/2016 - [] D -- C:\Users\Geneviève\AppData\Local\fontconfig =>.Portable Apps
O43 - CFD: 28/05/2016 - [] D -- C:\Users\Geneviève\AppData\Local\gegl-0.2 =>.Portable Apps
O43 - CFD: 08/02/2014 - [] D -- C:\Users\Geneviève\AppData\Local\Google =>.Google
O43 - CFD: 06/06/2016 - [] D -- C:\Users\Geneviève\AppData\Local\gtk-2.0 =>.GTK Project
O43 - CFD: 02/06/2015 - [] D -- C:\Users\Geneviève\AppData\Local\GWX =>.GWX
O43 - CFD: 05/03/2014 - [0] SHD -- C:\Users\Geneviève\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 28/11/2013 - [] D -- C:\Users\Geneviève\AppData\Local\Macromedia =>.Macromedia
O43 - CFD: 20/12/2016 - [] D -- C:\Users\Geneviève\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 27/12/2013 - [] D -- C:\Users\Geneviève\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 20/12/2016 - [] D -- C:\Users\Geneviève\AppData\Local\NVIDIA =>.nVidia Corporation
O43 - CFD: 20/12/2016 - [] D -- C:\Users\Geneviève\AppData\Local\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 26/07/2015 - [] D -- C:\Users\Geneviève\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 19/12/2016 - [] D -- C:\Users\Geneviève\AppData\Local\Paint.NET =>.Rick Brewster
O43 - CFD: 17/07/2016 - [] D -- C:\Users\Geneviève\AppData\Local\Profiles =>.Microsoft Corporation
O43 - CFD: 26/11/2013 - [] D -- C:\Users\Geneviève\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 14/11/2016 - [0] D -- C:\Users\Geneviève\AppData\Local\Skype =>.Skype
O43 - CFD: 08/03/2015 - [] D -- C:\Users\Geneviève\AppData\Local\Steam =>.SteamApps
O43 - CFD: 15/01/2014 - [] D -- C:\Users\Geneviève\AppData\Local\Take On Helicopters
O43 - CFD: 21/12/2016 - [] D -- C:\Users\Geneviève\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 05/03/2014 - [0] SHD -- C:\Users\Geneviève\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 11/11/2015 - [] D -- C:\Users\Geneviève\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 05/02/2015 - [] D -- C:\Users\Geneviève\AppData\Local\VNT
O43 - CFD: 10/08/2015 - [] D -- C:\Users\Geneviève\AppData\Local\Windows Live =>.Microsoft Corporation
O43 - CFD: 29/03/2015 - [] D -- C:\Users\Geneviève\AppData\Local\Windows Live Writer =>.Microsoft Corporation
O43 - CFD: 26/11/2013 - [0] D -- C:\Users\Geneviève\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\Geneviève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\Geneviève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 13/10/2016 - [] RD -- C:\Users\Geneviève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 13/05/2014 - [0] D -- C:\Users\Geneviève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Advanced RAR Password Recovery
O43 - CFD: 13/05/2014 - [0] D -- C:\Users\Geneviève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Advanced ZIP Password Recovery =>.Elcomsoft
O43 - CFD: 05/03/2014 - [] D -- C:\Users\Geneviève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS Video Magic =>.CyberLink Corporation
O43 - CFD: 05/03/2014 - [] D -- C:\Users\Geneviève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive =>.Bohemia Interactive
O43 - CFD: 26/11/2013 - [0] D -- C:\Users\Geneviève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 17/07/2015 - [] D -- C:\Users\Geneviève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LinuxLive USB Creator =>.LinuxLiveUSB Team
O43 - CFD: 22/08/2013 - [] D -- C:\Users\Geneviève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 13/10/2016 - [] RD -- C:\Users\Geneviève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 20/06/2016 - [] D -- C:\Users\Geneviève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Supercopier =>.SFX Team
O43 - CFD: 05/03/2014 - [] RD -- C:\Users\Geneviève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 05/03/2014 - [] D -- C:\Users\Geneviève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TuxGuitar 1.2
O43 - CFD: 15/05/2014 - [] D -- C:\Users\Geneviève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 05/03/2014 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/11/2013 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 05/03/2014 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/11/2013 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 11/03/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 05/03/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 22/03/2015 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation

---\\ ShellExecuteHook (2) - 0s
O46 - SEH:ShellExecuteHooks - (no name) - [HKLM] [64Bits] - {6710C780-E20E-4C49-A87D-321850ED3D7C} . (...) -- (.not file.)
O46 - SEH:ShellExecuteHooks - (no name) - [HKLM] [64Bits] - {8144778C-B040-11E6-973A-64006A5CFC23} . (...) -- (.not file.)

---\\ ShellIconOverlayIdentifiers (SIOI) (3) - 0s
O106 - SIOI: UpToDateOverlayHandler Class [ SkyDrive1] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Geneviève\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SyncingOverlayHandler Class [ SkyDrive2] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Geneviève\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: ErrorOverlayHandler Class [ SkyDrive3] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Geneviève\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\FileSyncShell.dll =>.Microsoft Corporation®

---\\ Liste des pilotes du système (74) - 15s
O58 - SDL:2013/08/22 13:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [324224] =>.Microsoft Windows®
O58 - SDL:2016/12/16 16:18:54 A . (.97V68D - .) -- C:\Windows\System32\drivers\90eb43a7cd6fe4abd6a542a508492e97.sys [324224] =>PUP.Optional.Wajam
O58 - SDL:2013/08/22 13:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/11/27 23:29:06 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aekmdcgb.sys [324224] =>.AVAST Software a.s.®
O58 - SDL:2013/08/22 13:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [324224] =>.Microsoft Windows®
O58 - SDL:2012/10/03 10:26:58 A . (.Alcor Micro, Corp. - Alocr Micro USB Mass Storage Driver.) -- C:\Windows\System32\drivers\AmUStor.sys [324224] =>.Alcor Micro, Corp.
O58 - SDL:2013/08/22 13:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [324224] =>.Microsoft Windows®
O58 - SDL:2012/05/31 04:47:44 A . (.ASUS - HID driver for ASUS Wireless Radio Control.) -- C:\Windows\System32\drivers\AsHIDSwitch64.sys [324224] =>.ASUSTeK Computer Inc.®
O58 - SDL:2013/01/16 14:11:34 A . (.ASUS Corporation - Asus TP Filter Driver.) -- C:\Windows\System32\drivers\AsusTP.sys [324224] =>.ASUSTeK Computer Inc.®
O58 - SDL:2013/06/18 15:45:02 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\drivers\athw8x.sys [324224] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2014/10/15 07:10:15 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\Windows\System32\drivers\avgntflt.sys [324224] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2014/10/15 07:10:15 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\Windows\System32\drivers\avipbb.sys [324224] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2013/12/13 15:03:28 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\Windows\System32\drivers\avkmgr.sys [324224] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2014/10/15 07:10:16 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\Windows\System32\drivers\avnetflt.sys [324224] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2013/08/13 00:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [324224] =>.Broadcom Corporation®
O58 - SDL:2012/12/28 11:47:20 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\Windows\System32\drivers\btath_flt.sys [324224] =>.Atheros Communications Inc.®
O58 - SDL:2012/12/28 11:47:20 A . (.Qualcomm Atheros - Qualcomm Atheros HCRP driver.) -- C:\Windows\System32\drivers\btath_hcrp.sys [324224] =>.Atheros Communications Inc.®
O58 - SDL:2012/12/28 11:47:22 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\Windows\System32\drivers\btath_lwflt.sys [324224] =>.Atheros Communications Inc.®
O58 - SDL:2014/01/28 14:32:18 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\Windows\System32\drivers\btfilter.sys [324224] =>.Qualcomm Atheros
O58 - SDL:2013/08/22 13:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/09/24 20:29:46 A . (.McAfee, Inc. - McAfee Personal Firewall IDS Plugin.) -- C:\Windows\System32\drivers\cfwids.sys [324224] =>.McAfee, Inc.®
O58 - SDL:2014/10/29 17:26:46 A . (.Citrix Systems, Inc. - Citrix USB Filter Driver.) -- C:\Windows\System32\drivers\ctxusbm.sys [324224] =>.Citrix Systems, Inc.®
O58 - SDL:2013/08/22 13:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [324224] =>.Microsoft Windows®
O58 - SDL:2012/08/21 13:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [324224] =>.GEAR Software Inc.®
O58 - SDL:2012/07/02 15:16:02 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [324224] =>.Intel Corporation®
O58 - SDL:2013/08/22 13:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/07/30 19:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [324224] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2013/07/25 20:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [324224] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2012/09/14 06:15:10 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStorA.sys [324224] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2013/08/10 01:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\Windows\System32\drivers\iaStorAV.sys [324224] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2013/08/22 13:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/10/01 13:02:30 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [324224] =>.Intel Corporation
O58 - SDL:2012/11/15 05:11:54 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [324224] =>.Intel(R) Corporation
O58 - SDL:2013/08/22 23:51:12 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\intelaud.sys [324224] =>.Intel Wireless Display®
O58 - SDL:2013/08/22 23:51:12 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\iwdbus.sys [324224] =>.Intel Wireless Display®
O58 - SDL:2012/08/02 04:22:48 A . (. - Keyboard Filter Driver.) -- C:\Windows\System32\drivers\kbfiltr.sys [324224] =>.Dritek System
O58 - SDL:2013/06/18 15:44:59 A . (.Qualcomm Atheros Co., Ltd. - Qualcomm Atheros Ar81xx series PCI-E Gigabi.) -- C:\Windows\System32\drivers\L1C63x64.sys [324224] =>.Qualcomm Atheros®
O58 - SDL:2013/08/22 13:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/09/24 20:19:56 A . (.McAfee, Inc. - Access Protection Filter Driver.) -- C:\Windows\System32\drivers\mfeapfk.sys [324224] =>.McAfee, Inc.®
O58 - SDL:2013/09/24 20:20:28 A . (.McAfee, Inc. - Anti-Virus File System Filter Driver.) -- C:\Windows\System32\drivers\mfeavfk.sys [324224] =>.McAfee, Inc.®
O58 - SDL:2012/06/22 08:37:04 A . (.McAfee, Inc. - McAfee Driver Cleaning Driver.) -- C:\Windows\System32\drivers\mfeclnk.sys [324224] =>.McAfee, Inc.®
O58 - SDL:2013/09/24 20:03:12 A . (.McAfee, Inc. - McAfee ELAM Driver.) -- C:\Windows\System32\drivers\mfeelamk.sys [324224] =>.Microsoft Windows Early Launch Anti-malware Publisher®
O58 - SDL:2013/09/24 20:21:32 A . (.McAfee, Inc. - McAfee Core Firewall Engine Driver.) -- C:\Windows\System32\drivers\mfefirek.sys [324224] =>.McAfee, Inc.®
O58 - SDL:2013/09/24 20:22:48 A . (.McAfee, Inc. - McAfee Link Driver.) -- C:\Windows\System32\drivers\mfehidk.sys [324224] =>.McAfee, Inc.®
O58 - SDL:2012/06/22 08:36:54 A . (.McAfee, Inc. - McAfee Code Analysis Driver.) -- C:\Windows\System32\drivers\mferkdet.sys [324224] =>.McAfee, Inc.®
O58 - SDL:2013/09/24 20:25:40 A . (.McAfee, Inc. - Anti-Virus Mini-Firewall Driver.) -- C:\Windows\System32\drivers\mfewfpk.sys [324224] =>.McAfee, Inc.®
O58 - SDL:2013/08/22 13:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [324224] =>.Microsoft Windows®
O58 - SDL:2016/12/21 12:44:12 A . (.Auteurs - .) -- C:\Windows\System32\drivers\NetUtils2016.sys [324224] =>.Superfluous.HDWallPaper
O58 - SDL:2016/12/12 03:37:18 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [324224] =>.NVIDIA Corporation®
O58 - SDL:2016/12/12 03:37:18 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvpciflt.sys [324224] =>.NVIDIA Corporation®
O58 - SDL:2013/08/22 13:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [324224] =>.Microsoft Windows®
O58 - SDL:2016/12/12 03:37:18 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad64v.sys [324224] =>.NVIDIA Corporation®
O58 - SDL:2014/08/08 17:31:10 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\ptun0901.sys [324224] =>.The OpenVPN Project
O58 - SDL:2013/01/22 14:43:32 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [324224] =>.Realtek Semiconductor Corp®
O58 - SDL:2013/08/22 16:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [324224] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2013/08/22 13:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [324224] =>.Microsoft Windows®
O58 - SDL:2016/09/05 05:47:06 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\Windows\System32\drivers\ssudbus.sys [324224] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2016/09/05 05:47:12 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\Windows\System32\drivers\ssudmdm.sys [324224] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2013/08/22 13:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/11/22 19:55:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901.sys [324224] =>.OpenVPN Technologies, Inc.®
O58 - SDL:2015/06/10 22:08:36 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [324224] =>.Apple, Inc.
O58 - SDL:2013/08/22 13:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [324224] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [324224] =>.Microsoft Windows®
O58 - SDL:2012/11/18 23:57:58 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\athw8x.sys [324224] =>.Qualcomm Atheros Communications, Inc.

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (22) - 151s
O61 - LFC: 2016/12/20 23:18:42 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\IccLibDll_x64.dll [94208]
O61 - LFC: 2016/12/20 23:18:44 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\igdail32.dll [143872]
O61 - LFC: 2016/12/20 23:18:44 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\igdail64.dll [162304]
O61 - LFC: 2016/12/20 23:18:44 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\igdde32.dll [182784]
O61 - LFC: 2016/12/20 23:18:44 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\igdde64.dll [221184]
O61 - LFC: 2016/12/20 23:18:47 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\igfxCUIServicePS.dll [86528]
O61 - LFC: 2016/12/20 23:18:47 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\igfxDHLib.dll [59904]
O61 - LFC: 2016/12/20 23:18:47 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\igfxDHLibv2_0.dll [69632]
O61 - LFC: 2016/12/20 23:18:47 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\igfxDILib.dll [10752]
O61 - LFC: 2016/12/20 23:18:48 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\igfxDILibv2_0.dll [10752]
O61 - LFC: 2016/12/20 23:18:48 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\igfxEMLib.dll [10240]
O61 - LFC: 2016/12/20 23:18:48 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\igfxEMLibv2_0.dll [10240]
O61 - LFC: 2016/12/20 23:18:48 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\igfxLHMLib.dll [5120]
O61 - LFC: 2016/12/20 23:18:48 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\igfxLHMLibv2_0.dll [5120]
O61 - LFC: 2016/12/20 23:18:49 A . (.Khronos Group.) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\Intel_OpenCL_ICD32.dll [60416]
O61 - LFC: 2016/12/20 23:18:49 A . (.Khronos Group.) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\Intel_OpenCL_ICD64.dll [64000]
O61 - LFC: 2016/12/20 23:18:49 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\libEGL.dll [124928]
O61 - LFC: 2016/12/20 23:18:49 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\libGLESv1_CM.dll [83968]
O61 - LFC: 2016/12/20 23:18:49 A . (..) -- C:\Users\Geneviève\Downloads\win64_153343.4425\Graphics\libGLESv2.dll [90112]
O61 - LFC: 2016/12/21 12:24:36 A . (..) -- C:\Users\Geneviève\AppData\Roaming\sp_data.sys [62]
O61 - LFC: 2016/12/17 21:04:13 A . (..) -- C:\Users\Geneviève\AppData\Roaming\Arererdom\Cooworyumother.dll [145920]
O61 - LFC: 2016/12/17 21:04:43 A . (..) -- C:\Users\Geneviève\AppData\Local\Temp\7Q2XF0GSI\social2search.exe [8617648] =>PUP.Optional.Wajam

---\\ Associations Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.)

---\\ Recherche d'infection sur les navigateurs (1) - 28s
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com

---\\ Enumère les services démarrés par Svchost (36) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\system32\wlidsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\ncasvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\sens.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - SvcHost Service for Microsoft Keyboard Filt.) -- C:\Windows\System32\KeyboardFilterSvc.dll [324224] =>.Microsoft Windows®

---\\ Liste des exceptions du parefeu Windows (27) - 6s
O87 - FAEL: "UDP Query User{E16AFECB-A4CF-4A2C-AFA8-074FC56E4B83}E:\tkoh\takeonhserver.exe" [In-None-P17-TRUE] .(...) -- E:\tkoh\takeonhserver.exe (.not file.)
O87 - FAEL: "TCP Query User{CC2C9930-1475-4ECF-BBFD-20CF53F29F75}E:\tkoh\takeonhserver.exe" [In-None-P6-TRUE] .(...) -- E:\tkoh\takeonhserver.exe (.not file.)
O87 - FAEL: "{0AEA86AF-FCE2-4EF5-9302-9012C1FE7B32}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Car Mechanic Simulator 2014 Demo\cmsDemo.exe =>.Steam Games
O87 - FAEL: "{95044341-046B-4028-8C97-8F3EF5940E88}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Car Mechanic Simulator 2014 Demo\cmsDemo.exe =>.Steam Games
O87 - FAEL: "UDP Query User{3F929B32-4775-4AD7-A245-94ABB48BD19A}F:\xmind\xmind.exe" [In-None-P17-TRUE] .(...) -- F:\xmind\xmind.exe (.not file.)
O87 - FAEL: "TCP Query User{F41F5B8E-2F4B-45A0-810B-DD51D8E54F01}F:\xmind\xmind.exe" [In-None-P6-TRUE] .(...) -- F:\xmind\xmind.exe (.not file.)
O87 - FAEL: "UDP Query User{BAD71D4E-D0ED-457F-9615-112D19BA4E1B}C:\windows\syswow64\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\windows\syswow64\javaw.exe (.not file.)
O87 - FAEL: "TCP Query User{95A30CE9-9D37-4D09-9177-F011BB40FD36}C:\windows\syswow64\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\windows\syswow64\javaw.exe (.not file.)
O87 - FAEL: "UDP Query User{767E9080-2F38-4F28-88B5-748290BBBCB1}F:\maniaplanet\maniaplanet.exe" [In-None-P17-TRUE] .(...) -- F:\maniaplanet\maniaplanet.exe (.not file.)
O87 - FAEL: "TCP Query User{1E0312AF-0527-4728-AE78-5D2B0C737F00}F:\maniaplanet\maniaplanet.exe" [In-None-P6-TRUE] .(...) -- F:\maniaplanet\maniaplanet.exe (.not file.)
O87 - FAEL: "UDP Query User{0C53EF4A-1B1F-4529-AFB3-F495451B2F44}C:\program files (x86)\java\jre7\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\java\jre7\bin\javaw.exe (.not file.)
O87 - FAEL: "TCP Query User{F834AC40-8742-4F9B-923F-06FE87A758BD}C:\program files (x86)\java\jre7\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\java\jre7\bin\javaw.exe (.not file.)
O87 - FAEL: "{3600E087-CEF1-4BEC-9E6A-4151B8D83D5B}" [In-None-P17-FALSE] .(...) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (.not file.)
O87 - FAEL: "{DB86437D-0C74-47D4-AC0F-8C9DF4D1EE67}" [In-None-P6-FALSE] .(...) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (.not file.)
O87 - FAEL: "{967E2A47-828B-42F1-9994-E30081710B32}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe (.not file.)
O87 - FAEL: "{57C0F666-E390-4EA9-A1C4-F5B25AC7673B}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe (.not file.)
O87 - FAEL: "TCP Query User{DDEE2FE0-ABC0-47CE-935D-520F630CEB33}C:\users\geneviève\desktop\xmind\xmind.exe" [In-None-P6-TRUE] .(...) -- C:\users\geneviève\desktop\xmind\xmind.exe
O87 - FAEL: "UDP Query User{234EBBBB-4353-4726-8D59-E4007ED93F63}C:\users\geneviève\desktop\xmind\xmind.exe" [In-None-P17-TRUE] .(...) -- C:\users\geneviève\desktop\xmind\xmind.exe
O87 - FAEL: "{58CBE60C-2C31-4029-969B-479C869AC7C5}" [In-None-P17-TRUE] .(...) -- C:\Users\Geneviève\AppData\Roaming\DownloadManager\idownloader.exe
O87 - FAEL: "{BFB6E0D4-D36D-49CD-831F-BF02CE4C2303}" [In-None-P6-TRUE] .(...) -- C:\Users\Geneviève\AppData\Roaming\DownloadManager\idownloader.exe
O87 - FAEL: "{2A4B1569-2D5F-4111-8588-88DAB2667EB4}" [In-None-P17-TRUE] .(...) -- C:\Users\Geneviève\AppData\Roaming\DownloadManager\idownloader.exe
O87 - FAEL: "TCP Query User{116C5DAB-7E5F-40CF-B49D-A87324BE2E21}I:\norton online backup\nobuclient.exe" [In-None-P6-TRUE] .(...) -- I:\norton online backup\nobuclient.exe (.not file.)
O87 - FAEL: "UDP Query User{2A361AD3-2028-4079-A68A-EF5B74F95D0B}I:\norton online backup\nobuclient.exe" [In-None-P17-TRUE] .(...) -- I:\norton online backup\nobuclient.exe (.not file.)
O87 - FAEL: "TCP Query User{0C28D168-E05F-47F7-9583-E813ADBE6A54}C:\users\geneviève\desktop\skype\phone\skype.exe" [In-None-P6-TRUE] .(...) -- C:\users\geneviève\desktop\skype\phone\skype.exe (.not file.)
O87 - FAEL: "UDP Query User{FD37BF7E-7AC2-41C0-B40F-1E3D46B47492}C:\users\geneviève\desktop\skype\phone\skype.exe" [In-None-P17-TRUE] .(...) -- C:\users\geneviève\desktop\skype\phone\skype.exe (.not file.)
O87 - FAEL: "TCP Query User{CBE6ADE3-DE5B-40AC-AC73-C7310D1C1788}C:\program files (x86)\hearthstone\hearthstone.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\hearthstone\hearthstone.exe (.not file.)
O87 - FAEL: "UDP Query User{348C675C-F1C6-4624-8FC4-9F0E65541516}C:\program files (x86)\hearthstone\hearthstone.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\hearthstone\hearthstone.exe (.not file.)

---\\ Recherche des packages WindowsInstaller (3) - 6s
[MD5.] [WIS][2013/11/28 20:23:59] (.Boxore OU - Windows Installer XML (3.6.3303.0).) -- C:\Windows\Installer\514227.msi [324224] =>PUP.Optional.Boxore
[MD5.] [WIS][2016/06/18 00:55:42] (.APN, LLC - Ask.com ® - Install Builder.) -- C:\Windows\Installer\630e117.msi [324224] =>PUP.Optional.Bandoo
[MD5.] [WIS][2014/11/03 06:56:07] (.APN, LLC - Ask.com ® - Install Builder.) -- C:\Windows\Installer\779a753.msi [324224] =>PUP.Optional.Bandoo

---\\ Scan Additionnel (14) - 0s
HKLM\SYSTEM\CurrentControlSet\Services\Muqory =>Adware.Suspect
HKLM\SYSTEM\CurrentControlSet\Services\tugyxuxo =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\HDWallPaper =>.Superfluous.HDWallPaper
C:\Windows\System32\Tasks\KMSAutoNet =>HackTool.AutoKMS
C:\Windows\System32\Tasks\Phuvudomarnury Helper =>Adware.Suspect
C:\Windows\System32\Tasks\updengine =>PUP.Optional.FastSearch
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} =>.Superfluous.Orphan
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} =>.Superfluous.Orphan
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{93DBF2BB-A2B3-4683-A92E-57E60751F346} =>.Superfluous.Orphan
C:\Windows\System32\drivers\90eb43a7cd6fe4abd6a542a508492e97.sys =>PUP.Optional.Wajam
C:\Windows\System32\drivers\NetUtils2016.sys =>.Superfluous.HDWallPaper
C:\Windows\Installer\514227.msi =>PUP.Optional.Boxore
C:\Windows\Installer\630e117.msi =>PUP.Optional.Bandoo
C:\Windows\Installer\779a753.msi =>PUP.Optional.Bandoo

---\\ Récapitulatif des éléments trouvés sur votre station (12) - 0s
https://www.anti-malware.top/2016/05/01/definition-dun-logiciel-pup-lpi/ =>Adware.Suspect
https://www.anti-malware.top/2016/04/30/pup-optional-crossrider/ =>PUP.Optional.CrossRider
https://www.anti-malware.top/2016/08/22/superfluous-hdwallpaper/ =>.Superfluous.HDWallPaper
https://www.anti-malware.top/2016/05/04/hacktool-autokms/ =>HackTool.AutoKMS
https://www.anti-malware.top/2016/07/05/pup-optional-fastsearch/ =>PUP.Optional.FastSearch
https://www.nicolascoolman.com/fr/les-toolbars/ =>Toolbar.AskBar
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.APNToolBar
https://www.anti-malware.top/2016/04/22/adware-installcore/ =>Adware.InstallCore
https://www.anti-malware.top/2016/05/07/pup-optional-wajam/ =>PUP.Optional.Wajam
https://www.anti-malware.top/2016/08/24/superfluous-mpccleaner/ =>.Superfluous.MPCCleaner
https://www.anti-malware.top/2016/05/02/pup-optional-boxore/ =>PUP.Optional.Boxore
https://www.nicolascoolman.com/fr/adware-bandoo/ =>PUP.Optional.Bandoo

~ End of the scan, 56074 items in 08mn00s (1323)

Publicité


Signaler le contenu de ce document

Publicité